CVE-2019-10783

All versions including 0.0.4 of lsof npm module are vulnerable to Command Injection. Every exported method used by the package uses the exec function to parse user input.
References
Link Resource
https://snyk.io/vuln/SNYK-JS-LSOF-543632 Exploit Third Party Advisory
Configurations

Configuration 1

cpe:2.3:a:isof_project:isof:*:*:*:*:*:node.js:*:*

Information

Published : 2020-01-29 10:15

Updated : 2020-08-24 05:37


NVD link : CVE-2019-10783

Mitre link : CVE-2019-10783

Products Affected
No products.
CWE