The functionality for synchronization in HGiga OAKlouds' certain moudules has an OS Command Injection vulnerability, allowing remote attackers to inject system commands within specific request parameters. This enables the execution of arbitrary code on the remote server without permission.
Metrics
Affected Vendors & Products
References
History
Thu, 23 Jan 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Hgiga
Hgiga oaklouds-organization-2.0 Hgiga oaklouds-organization-3.0 Hgiga oaklouds-webbase-2.0 Hgiga oaklouds-webbase-3.0 |
|
CPEs | cpe:2.3:a:hgiga:oaklouds-organization-2.0:*:*:*:*:*:*:*:* cpe:2.3:a:hgiga:oaklouds-organization-3.0:*:*:*:*:*:*:*:* cpe:2.3:a:hgiga:oaklouds-webbase-2.0:*:*:*:*:*:*:*:* cpe:2.3:a:hgiga:oaklouds-webbase-3.0:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Hgiga
Hgiga oaklouds-organization-2.0 Hgiga oaklouds-organization-3.0 Hgiga oaklouds-webbase-2.0 Hgiga oaklouds-webbase-3.0 |

Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2024-08-21T15:28:01.013Z
Reserved: 2024-02-15T01:33:48.679Z
Link: CVE-2024-26260

Updated: 2024-08-02T00:07:17.865Z

Status : Analyzed
Published: 2024-02-15T03:15:34.833
Modified: 2025-01-23T19:55:55.470
Link: CVE-2024-26260

No data.