CVE-2024-28033

OS command injection vulnerability exists in WebProxy 1.7.8 and 1.7.9, which may allow a remote unauthenticated attacker to execute an arbitrary OS command with the privilege of the running web server. Note that the developer was unreachable, therefore, users should consider stop using WebProxy 1.7.8 and 1.7.9.
Configurations

No configuration.

History

No history.

Information

Published : 2024-03-26 10:15

Updated : 2024-11-21 09:05


NVD link : CVE-2024-28033

Mitre link : CVE-2024-28033

CVE.ORG link : CVE-2024-28033


JSON object : View

Products Affected

No product.

CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')