CVE-2019-16328

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
03/10/2019
Last modified:
02/12/2022

Description

In RPyC 4.1.x through 4.1.1, a remote attacker can dynamically modify object attributes to construct a remote procedure call that executes code for an RPyC service with default configuration settings.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:rpyc_project:rpyc:*:*:*:*:*:*:*:* 4.1.0 (including) 4.1.1 (including)