CVE-2024-2389

In Flowmon versions prior to 11.1.14 and 12.3.5, an operating system command injection vulnerability has been identified.  An unauthenticated user can gain entry to the system via the Flowmon management interface, allowing for the execution of arbitrary system commands.
Configurations

No configuration.

History

02 Apr 2024, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-02 13:15

Updated : 2024-04-02 18:12


NVD link : CVE-2024-2389

Mitre link : CVE-2024-2389

CVE.ORG link : CVE-2024-2389


JSON object : View

Products Affected

No product.

CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')