Vulnerabilities > CVE-2023-46404 - Unspecified vulnerability in Utoronto Pcrs 3.10/3.11/3.9

047910
CVSS 9.9 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
utoronto
critical

Summary

PCRS <= 3.11 (d0de1e) “Questions” page and “Code editor” page are vulnerable to remote code execution (RCE) by escaping Python sandboxing.

Vulnerable Configurations

Part Description Count
Application
Utoronto
4