Beveiligingsadvies

CVE-2024-28033

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-03-26 09:34:07
Laatst bijgewerkt 2024-08-02 17:11:00
Toegewezen door jpcert
CVSS-score 7.3
Status PUBLISHED

Beschrijving

OS command injection vulnerability exists in WebProxy 1.7.8 and 1.7.9, which may allow a remote unauthenticated attacker to execute an arbitrary OS command with the privilege of the running web server. Note that the developer was unreachable, therefore, users should consider stop using WebProxy 1.7.8 and 1.7.9.