Vulnerabilities
Vulnerable Software
Dnt:  Security Vulnerabilities
im-resize through 2.3.2 allows remote attackers to execute arbitrary commands via the "exec" argument. The cmd argument used within index.js, can be controlled by user without any sanitization.
CVSS Score
9.8
EPSS Score
0.038
Published
2020-02-04
im-metadata through 3.0.1 allows remote attackers to execute arbitrary commands via the "exec" argument. It is possible to inject arbitrary commands as part of the metadata options which is given to the "exec" function.
CVSS Score
9.8
EPSS Score
0.024
Published
2020-02-04


Contact Us

Shodan ® - All rights reserved