In Flowmon versions prior to 11.1.14 and 12.3.5, an operating system command injection vulnerability has been identified. An unauthenticated user can gain entry to the system via the Flowmon management interface, allowing for the execution of arbitrary system commands.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 07 Feb 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Progress
Progress flowmon |
|
| CPEs | cpe:2.3:a:progress:flowmon:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Progress
Progress flowmon |
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: ProgressSoftware
Published:
Updated: 2024-08-01T19:11:53.536Z
Reserved: 2024-03-11T20:53:42.295Z
Link: CVE-2024-2389
Updated: 2024-08-01T19:11:53.536Z
Status : Analyzed
Published: 2024-04-02T13:15:51.693
Modified: 2025-02-07T17:00:46.730
Link: CVE-2024-2389
No data.
OpenCVE Enrichment
No data.
Weaknesses