Softnext Technologies Corp.’s SPAM SQR has a vulnerability of Code Injection within its specific function. An authenticated remote attacker with administrator privilege can exploit this vulnerability to execute arbitrary system command to perform arbitrary system operation or disrupt service.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-28825 | Softnext Technologies Corp.’s SPAM SQR has a vulnerability of Code Injection within its specific function. An authenticated remote attacker with administrator privilege can exploit this vulnerability to execute arbitrary system command to perform arbitrary system operation or disrupt service. |
Fixes
Solution
Update SPAM SQR version to 2.221231
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.twcert.org.tw/tw/cp-132-6955-c7612-1.html |
|
History
Wed, 19 Feb 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2025-02-19T16:27:56.502Z
Reserved: 2023-01-31T00:00:00.000Z
Link: CVE-2023-24835
Updated: 2024-08-02T11:03:19.256Z
Status : Modified
Published: 2023-03-27T04:15:09.750
Modified: 2024-11-21T07:48:29.497
Link: CVE-2023-24835
No data.
OpenCVE Enrichment
No data.
EUVD