Security Advisory

CVE-2024-24899

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-03-25 07:13:13
Last updated 2024-08-12 18:43:05
Assigner openEuler
State PUBLISHED

Description

Improper Neutralization of Special Elements used in an OS Command (OS Command Injection) vulnerability in openEuler aops-zeus on Linux allows Command Injection. This vulnerability is associated with program files https://gitee.Com/openeuler/aops-zeus/blob/master/zeus/conf/constant.Py. This issue affects aops-zeus: from 1.2.0 through 1.4.0.