Security Advisory

CVE-2024-43386

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-09-10 08:43:41
Last updated 2024-09-10 14:25:13
Assigner CERTVDE
State PUBLISHED

Description

A low privileged remote attacker can trigger the execution of arbitrary OS commands as root due to improper neutralization of special elements in the variable EMAIL_NOTIFICATION.TO in mGuard devices.