GramAddict
GHSA-q5h6-49gg-2wfg
PyPIbackdoor5/24/2022
Description
GramAddict bot uses dependency with reverse tcp backdoor
References (6)
https://nvd.nist.gov/vuln/detail/CVE-2020-36245github_advisoryhttps://github.com/GramAddict/bot/issues/134github_advisoryhttps://github.com/GramAddict/bot/pull/183github_advisoryhttps://github.com/GramAddict/bot/commit/b9d11691b2fb13749c3cd0f75c70ee31242053cegithub_advisoryhttps://github.com/GramAddict/botgithub_advisoryhttps://github.com/pypa/advisory-database/tree/main/vulns/gramaddict/PYSEC-2021-65.yamlgithub_advisory
Details
EcosystemPyPI
Attack Typebackdoor
Published5/24/2022
Related CVEs
Aliases
CVE-2020-36245
Quick Actions