Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Command Injection
Vulnerability Description
This affects all versions of package node-ps. The injection point is located in line 72 in lib/index.js.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
N/A
Vulnerability Title
Neekey node-ps 注入漏洞
Vulnerability Description
Neekey node-ps是美国Neekey个人开发者的一个查找工具。提供了用于查找正在运行的进程。 Neekey node-ps 中存在注入漏洞,该漏洞源于 lib/index.js 缺乏对用户输入数据的正确验证,未过滤或未正确过滤掉其中的特殊元素,导致系统或产品产生解析或解释方式错误。
CVSS Information
N/A
Vulnerability Type
N/A