VYPR
High severity7.2NVD Advisory· Published Feb 9, 2023· Updated Jun 17, 2026

CVE-2023-0575

CVE-2023-0575

Description

External Control of Critical State Data, Improper Control of Generation of Code ('Code Injection') vulnerability in YugaByte, Inc. Yugabyte DB on Windows, Linux, MacOS, iOS (DevopsBase.Java:execCommand, TableManager.Java:runCommand modules) allows API Manipulation, Privilege Abuse. This vulnerability is associated with program files backup.Py.

This issue affects Yugabyte DB: Lesser then 2.2.0.0

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:yugabyte:yugabytedb:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:yugabyte:yugabytedb:*:*:*:*:*:*:*:*range: <2.2.0.0
    • (no CPE)range: 2.0
    • (no CPE)range: <2.2.0.0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.