HCL BigFix Mobile is vulnerable to a command injection attack. An authenticated attacker could run arbitrary shell commands on the WebUI server.
References
Link | Resource |
---|---|
https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0106372 | Vendor Advisory |
https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0106372 | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2023-07-27 00:15
Updated : 2024-11-21 07:53
NVD link : CVE-2023-28012
Mitre link : CVE-2023-28012
CVE.ORG link : CVE-2023-28012
JSON object : View
Products Affected
hcltech
- bigfix_mobile
CWE
CWE-77
Improper Neutralization of Special Elements used in a Command ('Command Injection')