CVE-2023-29412

CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability exists that could cause remote code execution when manipulating internal methods through Java RMI interface.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:schneider-electric:apc_easy_ups_online_monitoring_software:*:*:*:*:*:*:*:*
OR cpe:2.3:o:microsoft:windows_10:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_11:-:*:*:*:*:*:-:*
cpe:2.3:o:microsoft:windows_server_2016:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2019:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2022:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:a:schneider-electric:easy_ups_online_monitoring_software:*:*:*:*:*:*:*:*
OR cpe:2.3:o:microsoft:windows_10:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_11:-:*:*:*:*:*:-:*
cpe:2.3:o:microsoft:windows_server_2016:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2019:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2022:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2023-04-18 21:15

Updated : 2024-11-21 07:57


NVD link : CVE-2023-29412

Mitre link : CVE-2023-29412

CVE.ORG link : CVE-2023-29412


JSON object : View

Products Affected

microsoft

  • windows_11
  • windows_server_2022
  • windows_10
  • windows_server_2016
  • windows_server_2019

schneider-electric

  • apc_easy_ups_online_monitoring_software
  • easy_ups_online_monitoring_software
CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')