Security Advisory

CVE-2021-34080

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-06-01 14:31:55
Last updated 2024-08-04 00:05:52
Assigner mitre
State PUBLISHED

Description

OS Command Injection vulnerability in es128 ssl-utils 1.0.0 for Node.js allows attackers to execute arbitrary commands via unsanitized shell metacharacters provided to the createCertRequest() and the createCert() functions.