The ML-Scanner package in PyPI v0.1.0 to v0.1.5 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-0157 | The ML-Scanner package in PyPI v0.1.0 to v0.1.5 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T07:54:03.484Z
Reserved: 2022-06-13T00:00:00.000Z
Link: CVE-2022-33000
No data.
Status : Modified
Published: 2022-06-24T21:15:08.147
Modified: 2024-11-21T07:07:23.757
Link: CVE-2022-33000
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD