High severity8.8NVD Advisory· Published Dec 11, 2025· Updated Jun 17, 2026
CVE-2024-58287
CVE-2024-58287
Description
reNgine 2.2.0 contains a command injection vulnerability in the nmap_cmd parameter of scan engine configuration that allows authenticated attackers to execute arbitrary commands. Attackers can modify the nmap_cmd parameter with malicious base64-encoded payloads to achieve remote code execution during scan engine configuration.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:yogeshojha:rengine:2.2.0:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
3- www.exploit-db.com/exploits/52081nvdExploitThird Party AdvisoryVDB Entry
- www.vulncheck.com/advisories/rengine-authenticated-command-injection-via-scan-engine-configurationnvdThird Party Advisory
- rengine.wikinvdProduct
News mentions
0No linked articles in our index yet.