Svi
Pretraži prema proizvođaču
Pretraži prema CWE oznaci
O usluzi
Pretplate
Jezik
hr
en
CVE-2023-45498 - CERT CVE
CVE-2023-45498
ID
CVE-2023-45498
Sažetak
VinChin Backup & Recovery v5.0.*, v6.0.*, v6.7.*, and v7.0.* was discovered to contain a command injection vulnerability.
Reference
http://packetstormsecurity.com/files/175397/VinChin-VMWare-Backup-7.0-Hardcoded-Credential-Remote-Code-Execution.html
http://packetstormsecurity.com/files/176289/Vinchin-Backup-And-Recovery-Command-Injection.html
http://seclists.org/fulldisclosure/2023/Oct/31
https://blog.leakix.net/2023/10/vinchin-backup-rce-chain/
http://packetstormsecurity.com/files/175397/VinChin-VMWare-Backup-7.0-Hardcoded-Credential-Remote-Code-Execution.html
http://packetstormsecurity.com/files/176289/Vinchin-Backup-And-Recovery-Command-Injection.html
http://seclists.org/fulldisclosure/2023/Oct/31
https://blog.leakix.net/2023/10/vinchin-backup-rce-chain/
CVSS
Base:
9.8
Impact:
5.9
Exploitability:
3.9
Pristup
Vektor
Složenost
Autentikacija
NETWORK
LOW
NONE
Impact
Povjerljivost
Cjelovitost
Dostupnost
HIGH
HIGH
HIGH
CVSS vektor
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Zadnje važnije ažuriranje
12-06-2025 - 15:15
Objavljeno
27-10-2023 - 04:15