RSS   Vulnerabilities for
'Open computer software inventory next generation'
   RSS

2020-06-30
 
CVE-2020-14947

CWE-78
 

 
OCS Inventory NG 2.7 allows Remote Command Execution via shell metacharacters to require/commandLine/CommandLine.php because mib_file in plugins/main_sections/ms_config/ms_snmp_config.php is mishandled in get_mib_oid.

 

 >>> Vendor: Factorfx 2 Products
Open computer software inventory next generation
Ocs inventory


Copyright 2024, cxsecurity.com

 

Back to Top