Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Chinamay Joshi

#15237de 53,635
17.6CVSS total
Vulnerabilidades · 2
Alta
2
PT-2023-26027
8.8
2023-08-08
Esds · Esds Emagic Data Center Management Suit · CVE-2023-37569
**Name of the Vulnerable Software and Affected Versions** ESDS Emagic Data Center Management Suit (affected versions not specified) **Description** The issue is caused by a lack of input sanitization in the Ping component of the ESDS Emagic Data Center Management Suit. A remote authenticated attacker could exploit this by injecting OS commands on the targeted system, potentially allowing the execution of arbitrary code on the targeted system. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2023-26029
8.8
2023-08-08
Esds · Esds Emagic Data Center Management Suit · CVE-2023-37570
**Name of the Vulnerable Software and Affected Versions** ESDS Emagic Data Center Management Suit (affected versions not specified) **Description** The issue exists due to the non-expiry of session cookies in the ESDS Emagic Data Center Management Suit. A remote attacker could reuse a stolen cookie to gain unauthorized access to the targeted system. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.