Description
An authenticated user is able to upload an arbitrary CGI-compatible file using the certificate upload utility and execute it with the root user privileges.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-53259 | An authenticated user is able to upload an arbitrary CGI-compatible file using the certificate upload utility and execute it with the root user privileges. |
References
History
Mon, 03 Mar 2025 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-434 |
Thu, 14 Nov 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 10 Oct 2024 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-434 |
Status: PUBLISHED
Assigner: CERT-PL
Published:
Updated: 2025-06-11T17:01:32.389Z
Reserved: 2023-11-24T11:53:46.294Z
Link: CVE-2023-49257
Updated: 2024-08-02T21:53:45.304Z
Status : Modified
Published: 2024-01-12T15:15:09.230
Modified: 2025-06-11T17:15:34.990
Link: CVE-2023-49257
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD