Description
An issue in Atlos v.1.0 allows an authenticated attacker to execute arbitrary code via a crafted payload into the description field in the incident function.
References
https://gist.github.com/senzee1984/ff30f0914db39d2741ab17332f0fc6e1
Third Party Advisory
https://gist.github.com/senzee1984/ff30f0914db39d2741ab17332f0fc6e1
Third Party Advisory
CVSS impact metrics
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
8 · High
Information
Source identifier
Vulnerability status
Modified
Published
2023-08-17T17:15:12.800Z
2 years agoLast modified
2024-11-21T07:14:16.110Z
1 year ago