VYPR
Unrated severityNVD Advisory· Published Apr 18, 2023· Updated Feb 5, 2025

CVE-2023-25555

CVE-2023-25555

Description

A CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability exists that could allow a user that knows the credentials to execute unprivileged shell commands on the appliance over SSH.

Affected products: StruxureWare Data Center Expert (V7.9.2 and prior)

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.