Record summary

CVE-2021-38834 has a selected CVSS score of 8.8 (high); EIP currently links 1 catalogued exploit.

Description

easy-mock v1.5.0-v1.6.0 allows remote attackers to bypass the vm2 sandbox and execute arbitrary system commands through special js code.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBeasy-mock 1.6.0 - Remote Code Execution (RCE) (Authenticated)ExploitDB exploitby LionTreeNot analyzed1 file
ExploitDB

PoC details

References

2