Vulnerabilities > Eprints > High

DATE CVE VULNERABILITY TITLE RISK
2021-03-01 CVE-2021-26704 OS Command Injection vulnerability in Eprints 3.4.2
EPrints 3.4.2 allows remote attackers to execute arbitrary commands via crafted input to the verb parameter in a cgi/toolbox/toolbox URI.
network
low complexity
eprints CWE-78
8.8