Security Advisory

CVE-2024-38288

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-07-25 00:00:00
Last updated 2024-08-02 04:04:25
Assigner mitre
State PUBLISHED

Description

A command-injection issue in the Certificate Signing Request (CSR) functionality in R-HUB TurboMeeting through 8.x allows authenticated attackers with administrator privileges to execute arbitrary commands on the underlying server as root.