A command injection vulnerability in the sandcat plugin of Caldera 2.3.1 and earlier allows authenticated attackers to execute any command or service.
History

Mon, 14 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.02051}

epss

{'score': 0.04201}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T14:15:28.486Z

Reserved: 2020-08-13T00:00:00

Link: CVE-2020-19907

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-07-12T20:15:08.513

Modified: 2024-11-21T05:09:29.030

Link: CVE-2020-19907

cve-icon Redhat

No data.