Security Advisory

CVE-2019-10796

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-02-24 17:40:06
Last updated 2024-08-04 22:32:02
Assigner snyk
State PUBLISHED

Description

rpi through 0.0.3 allows execution of arbritary commands. The variable pinNumbver in function GPIO within src/lib/gpio.js is used as part of the arguement of exec function without any sanitization.