Command Injection Vulnerability in dns-sync's resolve() Method

Command Injection Vulnerability in dns-sync's resolve() Method

CVE-2017-16100 · HIGH Severity

AV:N/AC:L/AU:N/C:C/I:C/A:C

dns-sync is a sync/blocking dns resolver. If untrusted user input is allowed into the resolve() method then command injection is possible.

Learn more about our User Device Pen Test.