← Back

Trojan

trojan

Vendor: Jrohy • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Jrohy
1Trojan
Jun 6, 2025
Jun 3, 2025
6.3 MEDIUM· v4
8.1 HIGH· v3
5.1 MEDIUM· v2
A vulnerability was found in Jrohy trojan up to 2.15.3. It has been declared as critical. This vulnerability affects the function LogChan of the file trojan/util/linux.go. The manipulation of the argument c leads to os c...Show more
A vulnerability was found in Jrohy trojan up to 2.15.3. It has been declared as critical. This vulnerability affects the function LogChan of the file trojan/util/linux.go. The manipulation of the argument c leads to os command injection. The attack can be initiated remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used.Show less
1Jrohy
1Trojan
Jul 3, 2025
Feb 7, 2025
N/A· v4
9.8 CRITICAL· v3
N/A· v2
An issue in trojan v.2.0.0 through v.2.15.3 allows a remote attacker to escalate privileges via the initialization interface /auth/register.