Authenticated command injection vulnerability in the command line interface of a network management service. Successful exploitation of this vulnerability could allow an attacker to execute arbitrary commands as a privileged user on the underlying operating system.
Metrics
Affected Vendors & Products
References
History
Thu, 23 Jan 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-77 |
Wed, 15 Jan 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 14 Jan 2025 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Authenticated command injection vulnerability in the command line interface of a network management service. Successful exploitation of this vulnerability could allow an attacker to execute arbitrary commands as a privileged user on the underlying operating system. | |
| Title | Authenticated Command Injection Vulnerability allows Unauthorized Command Execution in CLI Interface | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: hpe
Published: 2025-01-14T17:38:43.844Z
Updated: 2025-01-23T21:14:36.522Z
Reserved: 2025-01-10T16:27:25.924Z
Link: CVE-2025-23052
Updated: 2025-01-15T15:00:52.219Z
Status : Awaiting Analysis
Published: 2025-01-14T18:16:05.960
Modified: 2025-01-23T22:15:16.133
Link: CVE-2025-23052
No data.