CVE-2023-6071

Publication date

2023-11-30 12:48:51

Family

trellix

State

PUBLISHED

Description

An Improper Neutralization of Special Elements used in a command vulnerability in ESM prior to version 11.6.9 allows a remote administrator to execute arbitrary code as root on the ESM. This is possible as the input isnt correctly sanitized when adding a new data source.