← Back

CVE-2023-37198

nvd nist
Published: Jul 12, 2023Modified: Nov 21, 2024

JSON object

Loading...
7.2
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.2 / Impact: 5.9
Source: NVD

Description

A CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exists that could cause remote code execution when an admin user on DCE uploads or tampers with install packages.

Affected (1)

Struxureware Data Center Expert
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 7.9.3

Timeline

No history available yet.