CVE-2020-24916

Published
View on NVD ↗
CVSS v3
9.8
CRITICAL
CVSS v2
10
HIGH
Affected
2
PROJECTS

Description

CGI implementation in Yaws web server versions 1.81 to 2.0.7 is vulnerable to OS command injection.

Yaws webserver
GitHubGitHub
1.31K
Yaws web server OS command injection POC
GitHubGitHub
1