O-CMS 1.0.0 Authenticated OS Command Injection via ai_cli_script
O-CMS 1.0.0 has an authenticated OS command injection in the ai_cli_script parameter, letting privileged attackers execute arbitrary commands.
O-CMS version 1.0.0 contains an authenticated OS command injection vulnerability in its AI CLI configuration functionality. An authenticated attacker with sufficient privileges can supply shell metacharacters and extra commands through the ai_cli_script parameter of /admin/settings/save. The attacker-controlled CLI value is then executed when the configured AI provider is tested via /admin/settings/test-ai.
- Command injection via the ai_cli_script parameter of /admin/settings/save.
- Injected commands execute when the AI provider is tested through /admin/settings/test-ai.
- Requires an authenticated attacker with sufficient privileges.
Posted by Ron E on Sep 03 Description O-CMS version 1.0.0 contains an authenticated OS command injection vulnerability in the AI CLI configuration functionality. An authenticated attacker with sufficient privileges can supply shell metacharacters and additional commands through the ai_cli_script parameter of /admin/settings/save. When the configured AI provider is subsequently tested through /admin/settings/test-ai, the attacker-controlled CLI value is executed in a...
This source does not provide full text. Read it at seclists.org.