An OS command injection vulnerability has been reported to affect QuMagie. If exploited, the vulnerability could allow authenticated users to execute commands via a network.
We have already fixed the vulnerability in the following version:
QuMagie 2.1.3 and later
We have already fixed the vulnerability in the following version:
QuMagie 2.1.3 and later
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-43027 | An OS command injection vulnerability has been reported to affect QuMagie. If exploited, the vulnerability could allow authenticated users to execute commands via a network. We have already fixed the vulnerability in the following version: QuMagie 2.1.3 and later |
Fixes
Solution
We have already fixed the vulnerability in the following version: QuMagie 2.1.3 and later
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.qnap.com/en/security-advisory/qsa-23-50 |
|
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: qnap
Published:
Updated: 2024-09-03T17:35:42.394Z
Reserved: 2023-07-27T06:46:01.475Z
Link: CVE-2023-39295
Updated: 2024-08-02T18:02:06.934Z
Status : Modified
Published: 2023-11-10T16:15:32.580
Modified: 2024-11-21T08:15:05.807
Link: CVE-2023-39295
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD