CVE-2014-3539

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
06/04/2018
Last modified:
09/09/2020

Description

base/oi/doa.py in the Rope library in CPython (aka Python) allows remote attackers to execute arbitrary code by leveraging an unsafe call to pickle.load.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:rope_project:rope:*:*:*:*:*:python:*:* 0.11.0 (excluding)