Nette versions before 2.0.19, 2.1.13, 2.2.10, 2.3.14, 2.4.16, 3.0.6 are vulnerable to an code injection attack by passing specially formed parameters to URL that may possibly leading to RCE. Nette is a PHP/Composer MVC Framework.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: GitHub_M
Published: 2020-10-01T19:00:19
Updated: 2024-08-04T13:08:22.829Z
Reserved: 2020-06-25T00:00:00
Link: CVE-2020-15227
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2020-10-01T19:15:12.797
Modified: 2021-11-18T16:47:44.667
Link: CVE-2020-15227
Redhat
No data.