Files
CVEs-PoC/2020/CVE-2020-7673.md
T
2024-06-18 02:51:15 +02:00

739 B

CVE-2020-7673

Description

node-extend through 0.2.0 is vulnerable to Arbitrary Code Execution. User input provided to the argument A of extend function(A,B,as,isAargs) located within lib/extend.js is executed by the eval function, resulting in code execution.

POC

Reference

Github

No PoCs found on GitHub currently.