Eval Injection Vulnerability in Luci 0.26.0: Remote Code Execution via Crafted Cluster Configuration

Eval Injection Vulnerability in Luci 0.26.0: Remote Code Execution via Crafted Cluster Configuration

CVE-2014-3593 · MEDIUM Severity

AV:N/AC:M/AU:S/C:P/I:P/A:P

Eval injection vulnerability in luci 0.26.0 allows remote authenticated users with certain permissions to execute arbitrary Python code via a crafted cluster configuration.

Learn more about our User Device Pen Test.