Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-28114

Опубликовано: 12 мар. 2024
Источник: nvd
CVSS3: 8.1
CVSS3: 9.1
EPSS Низкий

Описание

Peering Manager is a BGP session management tool. There is a Server Side Template Injection vulnerability that leads to Remote Code Execution in Peering Manager <=1.8.2. As a result arbitrary commands can be executed on the operating system that is running Peering Manager. This issue has been addressed in version 1.8.3. Users are advised to upgrade. There are no known workarounds for this vulnerability.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:peering-manager:peering_manager:*:*:*:*:*:*:*:*
Версия до 1.8.3 (исключая)

EPSS

Процентиль: 67%
0.00532
Низкий

8.1 High

CVSS3

9.1 Critical

CVSS3

Дефекты

CWE-74
NVD-CWE-Other

EPSS

Процентиль: 67%
0.00532
Низкий

8.1 High

CVSS3

9.1 Critical

CVSS3

Дефекты

CWE-74
NVD-CWE-Other