CVE-2023-41149
Summary
| CVE | CVE-2023-41149 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-09-06 13:15:00 UTC |
| Updated | 2023-09-08 21:21:00 UTC |
| Description | F-RevoCRM version7.3.7 and version7.3.8 contains an OS command injection vulnerability. If this vulnerability is exploited, an attacker who can access the product may execute an arbitrary OS command on the server where the product is running. |
Risk And Classification
Problem Types: CWE-78
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| F-RevoCRM version7.3系の脆弱性と対応について – CRM(顧客管理)ならオープンソースのF-RevoCRM | MISC | f-revocrm.jp | |
| JVN#78113802: Multiple vulnerabilities in F-RevoCRM | MISC | jvn.jp | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.