A vulnerability in the web-based management allows an unauthenticated remote attacker to inject arbitrary system commands and gain full system control. Those commands are executed with root privileges. The vulnerability is located in the user request handling of the web-based management.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://cert.vde.com/en/advisories/VDE-2023-037 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: CERTVDE
Published: 2023-11-21T07:00:25.240Z
Updated: 2024-08-02T07:17:12.285Z
Reserved: 2023-08-04T08:15:12.564Z
Link: CVE-2023-4149
Vulnrichment
No data.
NVD
Status : Modified
Published: 2023-11-21T07:15:10.093
Modified: 2024-11-21T08:34:29.230
Link: CVE-2023-4149
Redhat
No data.