ZeroHour

CVE-2023-24107

PoC
CVSS 3.1
9.8 critical
EPSS
1%p67
Published
()
Modified
Description

hour_of_code_python_2015 commit 520929797b9ca43bb818b2e8f963fb2025459fa3 was discovered to contain a code execution backdoor via the request package (requirements.txt). This vulnerability allows attackers to access sensitive user information and execute arbitrary code.

Vendors
hour of code python 2015 project
Products
hour of code python 2015
Weakness
CWE-94
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.