Vulnerability CVE-2024-22033


Published: 2024-10-16

Description:
The OBS service obs-service-download_url was vulnerable to a command injection vulnerability. The attacker could provide a configuration to the service that allowed to execute command in later steps

Type:

CWE-78

(Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') )

 References:
https://bugzilla.suse.com/show_bug.cgi?id=CVE-2024-22033

Copyright 2024, cxsecurity.com

 

Back to Top