Security Advisory

CVE-2021-44079

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-11-22 07:00:42
Last updated 2024-08-04 04:10:17
Assigner mitre
State PUBLISHED

Description

In the wazuh-slack active response script in Wazuh 4.2.x before 4.2.5, untrusted user agents are passed to a curl command line, potentially resulting in remote code execution.