Node.js multisig-wallet-generator code execution |
NAME
Node.js multisig-wallet-generator code execution
- Platforms Affected:
Node.js multisig-wallet-generator - Risk Level:
9.8 - Exploitability:
Unproven - Consequences:
Gain Access
DESCRIPTION
Node.js multisig-wallet-generator could allow a remote attacker to execute arbitrary code on the system, caused by the containment of malicious package. An attacker could exploit this vulnerability to execute arbitrary code on the system.
CVSS 3.0 Information
- Privileges Required: None
- User Interaction: None
- Scope: Unchanged
- Access Vector: Network
- Access Complexity: Low
- Confidentiality Impact: High
- Integrity Impact: High
- Availability Impact: High
- Remediation Level: Unavailable
MITIGATION
No remedy available as of June 27, 2022.
- Reference Link:
https://security.snyk.io/vuln/SNYK-JS-MULTISIGWALLETGENERATOR-2934699 - Reference Link:
https://www.npmjs.com/package/multisig-wallet-generator
If you like the site, please consider joining the telegram channel and supporting us on Patreon using the button below.