Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
openITCOCKPIT before 3.7.3 has a web-based terminal that allows attackers to execute arbitrary OS commands via shell metacharacters that are mishandled on an su command line in app/Lib/SudoMessageInterface.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
It-novum OpenITCOCKPIT 操作系统命令注入漏洞
Vulnerability Description
It-novum OpenITCOCKPIT是德国It-novum公司的一套开源的系统监控工具。 It-novum openITCOCKPIT 3.7.3之前版本中基于Web的终端存在安全漏洞。攻击者可借助shell元字符利用该漏洞执行任意操作系统命令。
CVSS Information
N/A
Vulnerability Type
N/A