Security Advisory

CVE-2022-1509

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-04-28 10:05:09
Last updated 2024-08-30 15:20:56
Assigner @huntrdev
State PUBLISHED

Description

Command Injection Vulnerability in GitHub repository hestiacp/hestiacp prior to 1.5.12. An authenticated remote attacker with low privileges can execute arbitrary code under root context.