2024-05-25 21:48:12 +02:00
|
|
|
### [CVE-2023-46404](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-46404)
|
|
|
|

|
|
|
|

|
|
|
|

|
|
|
|
|
|
|
|
### Description
|
|
|
|
|
|
|
|
PCRS <= 3.11 (d0de1e) “Questions” page and “Code editor” page are vulnerable to remote code execution (RCE) by escaping Python sandboxing.
|
|
|
|
|
|
|
|
### POC
|
|
|
|
|
|
|
|
#### Reference
|
2024-07-25 21:25:12 +00:00
|
|
|
- https://bitbucket.org/utmandrew/pcrs/commits/5f18bcbb383b7d73f7a8b399cc52b23597d752ae
|
2024-05-25 21:48:12 +02:00
|
|
|
- https://github.com/windecks/CVE-2023-46404
|
|
|
|
|
|
|
|
#### Github
|
|
|
|
- https://github.com/nomi-sec/PoC-in-GitHub
|
2024-06-22 09:37:59 +00:00
|
|
|
- https://github.com/windecks/CVE-2023-46404
|
2024-05-25 21:48:12 +02:00
|
|
|
|