CyberRota Analysis
AI analysis pending.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Detected Signals
arbitrary code execution code execution
Note: these links are listed for security research and verification purposes only.
CVE
CVE-2020-28367
Severity
HIGH
CVSS
7.5
EPSS
2.37%
Original NVD Description
Code injection in the go command with cgo before Go 1.14.12 and Go 1.15.5 allows arbitrary code execution at build time via malicious gcc flags specified via a #cgo directive.