Dango-Translator v4.5.5 was discovered to contain a remote command execution (RCE) vulnerability via the component app/config/cloud_config.json.
References
Link | Resource |
---|---|
https://github.com/PantsuDango/Dango-Translator | Product |
https://github.com/PantsuDango/Dango-Translator/issues/127 | Exploit Issue Tracking Patch Vendor Advisory |
Configurations
History
No history.
Information
Published : 2023-08-03 19:15
Updated : 2023-08-14 18:40
NVD link : CVE-2023-38942
Mitre link : CVE-2023-38942
CVE.ORG link : CVE-2023-38942
JSON object : View
Products Affected
dango
- dango-translator
CWE
CWE-77
Improper Neutralization of Special Elements used in a Command ('Command Injection')