EPrints 3.4.2 allows remote attackers to execute arbitrary commands via crafted input to the verb parameter in a cgi/toolbox/toolbox URI.Referenceshttps://files.eprints.org/2549/https://files.eprints.org/2548/https://github.com/grymer/CVE/blob/master/eprints_security_review.pdf