9.8
CVSSv3

CVE-2023-38317

Published: 26/01/2024 Updated: 02/02/2024
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

An issue exists in OpenNDS prior to 10.1.3. It fails to sanitize the network interface name entry in the configuration file, allowing attackers that have direct or indirect access to this file to execute arbitrary OS commands.

Vulnerable Product Search on Vulmon Subscribe to Product

opennds opennds