CVE-2020-36650
Severity CVSS v4.0:
Pending analysis
Type:
CWE-77
Command Injection
Publication date:
11/01/2023
Last modified:
17/05/2024
Description
A vulnerability, which was classified as critical, was found in IonicaBizau node-gry up to 5.x. This affects an unknown part. The manipulation leads to command injection. Upgrading to version 6.0.0 is able to address this issue. The patch is named 5108446c1e23960d65e8b973f1d9486f9f9dbd6c. It is recommended to upgrade the affected component. The associated identifier of this vulnerability is VDB-218019.
Impact
Base Score 3.x
8.00
Severity 3.x
HIGH
Base Score 2.0
5.20
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:gry_project:gry:*:*:*:*:*:node.js:*:* | 6.0.0 (excluding) |
To consult the complete list of CPE names with products and versions, see this page