An issue in TuomoKu SPx-GC v.1.3.0 and before allows a remote attacker to execute arbitrary code via the child_process.js function.
References
Link | Resource |
---|---|
https://github.com/TuomoKu/SPX-GC | Product |
https://github.com/TuomoKu/SPX-GC/blob/v.1.3.0/routes/routes-api.js#L39 | Product |
https://github.com/merbinr/CVE-2024-44623 | Third Party Advisory |
Configurations
History
No history.
Information
Published : 2024-09-16 16:15
Updated : 2024-09-25 14:53
NVD link : CVE-2024-44623
Mitre link : CVE-2024-44623
CVE.ORG link : CVE-2024-44623
JSON object : View
Products Affected
spx
- spx_graphics_controller
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')