Security Advisory

CVE-2023-4149

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-11-21 07:00:25
Last updated 2024-08-02 07:17:12
Assigner CERTVDE
State PUBLISHED

Description

A vulnerability in the web-based management allows an unauthenticated remote attacker to inject arbitrary system commands and gain full system control. Those commands are executed with root privileges. The vulnerability is located in the user request handling of the web-based management.