On a Wolters Kluwer B.POINT 23.70.00 server running Linux...
High severity
Unreviewed
Published
Dec 25, 2023
to the GitHub Advisory Database
•
Updated Jan 12, 2024
Description
Published by the National Vulnerability Database
Dec 25, 2023
Published to the GitHub Advisory Database
Dec 25, 2023
Last updated
Jan 12, 2024
On a Wolters Kluwer B.POINT 23.70.00 server running Linux on premises, during the authentication phase, a validated system user can achieve remote code execution via Argument Injection in the server-to-server module.
References