Количество 2
Количество 2
CVE-2019-7670
Prima Systems FlexAir, Versions 2.3.38 and prior. The application incorrectly neutralizes special elements that could modify the intended OS command when it is sent to a downstream component, which could allow attackers to execute commands directly on the operating system.
GHSA-pqmc-5wjw-632r
Prima Systems FlexAir devices allow Authenticated Command Injection resulting in Root Remote Code Execution.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2019-7670 Prima Systems FlexAir, Versions 2.3.38 and prior. The application incorrectly neutralizes special elements that could modify the intended OS command when it is sent to a downstream component, which could allow attackers to execute commands directly on the operating system. | CVSS3: 7.2 | 27% Средний | больше 6 лет назад | |
GHSA-pqmc-5wjw-632r Prima Systems FlexAir devices allow Authenticated Command Injection resulting in Root Remote Code Execution. | CVSS3: 7.2 | 27% Средний | больше 3 лет назад |
Уязвимостей на страницу