CVE-2021-29501

Severity CVSS v4.0:
Pending analysis
Type:
CWE-77 Command Injection
Publication date:
10/05/2021
Last modified:
25/10/2022

Description

Ticketer is a command based ticket system cog (plugin) for the red discord bot. A vulnerability allowing discord users to expose sensitive information has been found in the Ticketer cog. Please upgrade to version 1.0.1 as soon as possible. As a workaround users may unload the ticketer cog to disable the exploitable code.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:dav-cogs_project:dav-cogs:*:*:*:*:*:*:*:* 1.0.1 (excluding)