NA

CVE-2023-46404

Published: 03/11/2023 Updated: 13/11/2023
CVSS v3 Base Score: 9.9 | Impact Score: 6 | Exploitability Score: 3.1
VMScore: 0

Vulnerability Summary

PCRS <= 3.11 (d0de1e) “Questions” page and “Code editor” page are vulnerable to remote code execution (RCE) by escaping Python sandboxing.

Vulnerable Product Search on Vulmon Subscribe to Product

utoronto pcrs

Github Repositories

PoC and Writeup for CVE-2023-46404.

CVE-2023-46404 PCRS is a webapp for online programming exercises developed at the University of Toronto See Bitbucket repository: bitbucketorg/utmandrew/pcrs/src/311/ Summary PCRS “Questions” page with code submission and “Code editor” page are vulnerable to remote code execution (RCE) by escaping Python sandboxing Details Remote code executi