Loading
Generated remediation guidance and an executive summary. No account required.
In systeminformation (npm package) before version 4.31.1 there is a command injection vulnerability. The problem was fixed in version 4.31.1 with a shell string sanitation fix.
Use CWE-78, Systeminformation vendor hub and Systeminformation product page to widen CVE-2020-26274 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2021-21315, CVE-2023-42810 and CVE-2021-21388 for nearby disclosures in the same product family.