Beveiligingsadvies

CVE-2023-3260

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-08-14 03:51:52
Laatst bijgewerkt 2024-10-09 13:23:37
Toegewezen door trellix
CVSS-score 7.2
Status PUBLISHED

Beschrijving

The Dataprobe iBoot PDU running firmware version 1.43.03312023 or earlier is vulnerable to command injection via the `user-name` URL parameter. An authenticated malicious agent can exploit this vulnerability to execute arbitrary command on the underlying Linux operating system.