Podatność CVE-2021-42952


Publikacja: 2022-02-25

Opis:
All pervious versions before October 25, 2021 of Zepl Notebooks are affeced by a sandbox escape vulnerability. Upon launching Remote Code Execution from the Notebook, users can then use that to subsequently escape the running context sandbox and proceed to access internal Zepl assets including cloud metadata services.

W naszej bazie, znaleźliśmy następujące noty dla tego CVE:
Tytuł
Autor
Data
High
Zepl Notebook Sandbox Escape
Josh Sheppard
17.02.2022

 Referencje:
http://zepl.com
https://seclists.org/fulldisclosure/2022/Feb/32

Copyright 2024, cxsecurity.com

 

Back to Top