CVE-2018-10587
Summary
| CVE | CVE-2018-10587 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-11-01 17:29:00 UTC |
| Updated | 2018-12-12 20:21:00 UTC |
| Description | NetGain Enterprise Manager (EM) is affected by OS Command Injection vulnerabilities in versions before 10.0.57. These vulnerabilities could allow remote authenticated attackers to inject arbitrary code, resulting in remote code execution. |
Risk And Classification
Problem Types: CWE-78
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Netgain-systems | Enterprise Manager | All | All | All | All |
| Application | Netgain-systems | Enterprise Manager | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| wizlynx group | Remote Command Execution Vulnerabilities in NetGain EM | MISC | www.wizlynxgroup.com | Third Party Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.