A OS Command Injection vulnerability was discovered in Artica Proxy 4.30.000000. Attackers can execute OS commands in cyrus.events.php with GET param logs and POST param rp.
References
Configurations
History
21 Nov 2024, 06:26
Type | Values Removed | Values Added |
---|---|---|
References | () https://medium.com/%40rootless724/artica-proxy-4-30-cyrus-events-php-rce-3aa2a868c695 - |
07 Nov 2023, 03:38
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Information
Published : 2022-05-05 11:15
Updated : 2024-11-21 06:26
NVD link : CVE-2021-41739
Mitre link : CVE-2021-41739
CVE.ORG link : CVE-2021-41739
JSON object : View
Products Affected
artica-proxy
- artica_proxy
CWE
CWE-78
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')