Eval injection vulnerability in Karrigell before 2.1.8 allows remote attackers to execute arbitrary Python code via modified arguments to a Karrigell services (.ks) script, which can reference functions from libraries that are used by that script.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Karrigell | Karrigell | 2.0 (including) | 2.0 (including) |
Karrigell | Karrigell | 2.0.1 (including) | 2.0.1 (including) |
Karrigell | Karrigell | 2.0.2 (including) | 2.0.2 (including) |
Karrigell | Karrigell | 2.0.3 (including) | 2.0.3 (including) |
Karrigell | Karrigell | 2.0.4 (including) | 2.0.4 (including) |
Karrigell | Karrigell | 2.0.5 (including) | 2.0.5 (including) |
Karrigell | Karrigell | 2.0_beta (including) | 2.0_beta (including) |
Karrigell | Karrigell | 2.1 (including) | 2.1 (including) |
Karrigell | Karrigell | 2.1.1 (including) | 2.1.1 (including) |
Karrigell | Karrigell | 2.1.2 (including) | 2.1.2 (including) |
Karrigell | Karrigell | 2.1.3 (including) | 2.1.3 (including) |
Karrigell | Karrigell | 2.1.4 (including) | 2.1.4 (including) |
Karrigell | Karrigell | 2.1.5 (including) | 2.1.5 (including) |