ZeroHour

CVE-2023-3313

CVSS 3.1
7.8 high
EPSS
<1%p39
Published
()
Modified
Description

An OS common injection vulnerability exists in the ESM certificate API, whereby incorrectly neutralized special elements may have allowed an unauthorized user to execute system command injection for the purpose of privilege escalation or to execute arbitrary commands.

Vendors
trellix
Products
enterprise security manager
Weakness
CWE-78
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.