Security Advisory

CVE-2023-6071

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-11-30 12:48:51
Last updated 2024-10-15 17:41:47
Assigner trellix
CVSS score 8.4
State PUBLISHED

Description

An Improper Neutralization of Special Elements used in a command vulnerability in ESM prior to version 11.6.9 allows a remote administrator to execute arbitrary code as root on the ESM. This is possible as the input isn't correctly sanitized when adding a new data source.