Vulnerability Description
Gerapy is a distributed crawler management framework. Gerapy prior to version 0.9.8 is vulnerable to remote code execution, and this issue is patched in version 0.9.8.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Gerapy | Gerapy | < 0.9.8 |
Related Weaknesses (CWE)
References
- http://packetstormsecurity.com/files/165459/Gerapy-0.9.7-Remote-Code-Execution.hExploitThird Party Advisory
- https://github.com/Gerapy/Gerapy/commit/49bcb19be5e0320e7e1535f34fe00f16a3cf3b28PatchThird Party Advisory
- https://github.com/Gerapy/Gerapy/issues/219Issue TrackingThird Party Advisory
- https://github.com/Gerapy/Gerapy/security/advisories/GHSA-9w7f-m4j4-j3xwThird Party Advisory
- http://packetstormsecurity.com/files/165459/Gerapy-0.9.7-Remote-Code-Execution.hExploitThird Party Advisory
- https://github.com/Gerapy/Gerapy/commit/49bcb19be5e0320e7e1535f34fe00f16a3cf3b28PatchThird Party Advisory
- https://github.com/Gerapy/Gerapy/issues/219Issue TrackingThird Party Advisory
- https://github.com/Gerapy/Gerapy/security/advisories/GHSA-9w7f-m4j4-j3xwThird Party Advisory
FAQ
What is CVE-2021-43857?
CVE-2021-43857 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Gerapy is a distributed crawler management framework. Gerapy prior to version 0.9.8 is vulnerable to remote code execution, and this issue is patched in version 0.9.8.
How severe is CVE-2021-43857?
CVE-2021-43857 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2021-43857?
Check the references section above for vendor advisories and patch information. Affected products include: Gerapy Gerapy.