CVE-2024-10035

Improper Control of Generation of Code ('Code Injection') vulnerability in BG-TEK Informatics Security Technologies CoslatV3 allows Command Injection.This issue affects CoslatV3: through 3.1069. NOTE: The vendor was contacted and it was learned that the product is not supported.
References
Link Resource
https://www.usom.gov.tr/bildirim/tr-24-1814 Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:bg-tek:coslat:*:*:*:*:*:*:*:*

History

08 Nov 2024, 15:11

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
Summary
  • (es) La vulnerabilidad de control inadecuado de la generación de código ('inyección de código') en CoslatV3 de BG-TEK Informatics Security Technologies permite la inyección de comandos. Este problema afecta a CoslatV3: hasta 3.1069. NOTA: Se contactó al proveedor y se supo que el producto no cuenta con soporte.
First Time Bg-tek
Bg-tek coslat
References () https://www.usom.gov.tr/bildirim/tr-24-1814 - () https://www.usom.gov.tr/bildirim/tr-24-1814 - Third Party Advisory
CPE cpe:2.3:a:bg-tek:coslat:*:*:*:*:*:*:*:*

04 Nov 2024, 12:16

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-04 12:16

Updated : 2024-11-08 15:11


NVD link : CVE-2024-10035

Mitre link : CVE-2024-10035

CVE.ORG link : CVE-2024-10035


JSON object : View

Products Affected

bg-tek

  • coslat
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')