Today > 13 Critical | 36 High | 32 Medium vulnerabilities   -   You can now download lists of IOCs here!

CVE-2024-52058

Dec. 13, 2024, 11:15 a.m.

Product(s) Impacted

RTI Connext Professional (System Designer)

  • 7.0.0 - 7.3.0.2
  • 6.1.0 - 6.1.2.19

Description

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in RTI Connext Professional (System Designer) allows OS Command Injection.This issue affects Connext Professional: from 7.0.0 before 7.3.0.2, from 6.1.0 before 6.1.2.19.

Weaknesses

CWE-78
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

The product constructs all or part of an OS command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended OS command when it is sent to a downstream component.

CWE ID: 78

Date

Published: Dec. 13, 2024, 11:15 a.m.

Last Modified: Dec. 13, 2024, 11:15 a.m.

Status : Awaiting Analysis

CVE has been recently published to the CVE List and has been received by the NVD.

More info

Source

3f572a00-62e2-4423-959a-7ea25eff1638

References

https://www.rti.com/ 3f572a00-62e2-4423-959a-7ea25eff1638