Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Versions of the package nemo-appium before 0.0.9 are vulnerable to Command Injection due to improper input sanitization in the 'module.exports.setup' function. **Note:** In order to exploit this vulnerability appium-running 0.1.3 has to be installed as one of nemo-appium dependencies.
CVSS Information
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
OS命令中使用的特殊元素转义处理不恰当(OS命令注入)
Vulnerability Title
nemo-appium 安全漏洞
Vulnerability Description
nemo-appium是PayPal开源的一个插件。用于在 Nemo 启动期间启动 appium 服务器,在驱动程序时终止。 nemo-appium 0.0.9之前版本存在安全漏洞,该漏洞源于对用户的输入清理不当。
CVSS Information
N/A
Vulnerability Type
N/A