Security Advisory
CVE-2023-38323
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
An issue was discovered in OpenNDS before 10.1.3. It fails to sanitize the status path script entry in the configuration file, allowing attackers that have direct or indirect access to this file to execute arbitrary OS commands.