


Community Manager
Options
- Subscribe to RSS Feed
- Mark as New
- Mark as Read
- Bookmark
- Subscribe
- Printer Friendly Page
- Report Inappropriate Content
01-21-2025
07:41 AM
Summary
A vulnerability in the package_index module of pypa/setuptools versions allows for remote code execution via its download functions. If these functions are exposed to user-controlled inputs, such as package URLs, they can execute arbitrary commands on the system.
Products Potentially Affected
OS/Product |
Exposure |
ExtremeCloud IQ - Site Engine (XIQ-SE) |
No |
Repair Recommendations
None.
Please see the full security advisory article here for more details and updates.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.