Vulnerabilities > Netease > Pomelo Monitor > 0.3.6

DATE CVE VULNERABILITY TITLE RISK
2020-04-02 CVE-2020-7620 OS Command Injection vulnerability in Netease Pomelo-Monitor 0.3.5/0.3.6/0.3.7
pomelo-monitor through 0.3.7 is vulnerable to Command Injection.It allows injection of arbitrary commands as part of 'pomelo-monitor' params.
network
low complexity
netease CWE-78
critical
9.8