8.8
CVSSv3

CVE-2022-44019

Published: 30/10/2022 Updated: 08/08/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

In Total.js 4 prior to 0e5ace7, /api/common/ping can achieve remote command execution via shell metacharacters in the host parameter.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

totaljs total.js