Security Advisory

CVE-2023-37198

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-07-12 06:44:34
Last updated 2024-11-07 14:45:30
Assigner schneider
CVSS score 6.8
State PUBLISHED

Description

A CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exists that could cause remote code execution when an admin user on DCE uploads or tampers with install packages.