A vulnerability in ESM 11.6.10 allows unauthenticated...
Critical severity
Unreviewed
Published
Nov 29, 2024
to the GitHub Advisory Database
•
Updated Nov 29, 2024
Description
Published by the National Vulnerability Database
Nov 29, 2024
Published to the GitHub Advisory Database
Nov 29, 2024
Last updated
Nov 29, 2024
A vulnerability in ESM 11.6.10 allows unauthenticated access to the internal Snowservice API and enables remote code execution through command injection, executed as the root user.
References