Miggo Logo

GHSA-g86j-hwg9-77q5: SentinelOne impersonated via PyPI packages

N/A

CVSS Score

Basic Information

CVE ID
-
EPSS Score
-
CWE
-
Published
12/27/2022
Updated
1/12/2023
KEV Status
No
Technology
TechnologyPython

Technical Details

CVSS Vector
-
Package NameEcosystemVulnerable VersionsFirst Patched Version
SentinelOnepip>= 1.0.0, <= 1.2.1
sentinelone-sdkpip>= 6.2.1, <= 6.2.2
SentineloneSDKpip= 1.0.0
Sentinelonepip= 1.0.0

Vulnerability Intelligence
Miggo AIMiggo AI

Miggo AIRoot Cause Analysis:
In progress

WAF Protection Rules

WAF Rule

In ****m**r ****, t*r**t **tors imp*rson*t** S*ntin*lOn* *y uplo**in* **k* so*tw*r* **v*lopm*nt kits (S*Ks) onto PyPI. T** S*Ks *ont*in *ully *un*tion*l S*ntin*lOn* *li*nts, *ut t** p**k***s *lso *ont*in** m*li*ious ***k*oors t**t *r* only *x**ut** w

Reasoning

No *n*lysis *v*il**l*