Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Ebwill

#25269of 53,622
9.8Total CVSS
Vulnerabilities · 1
PT-2023-32609
9.8
2023-11-27
Moses-Smt · Moses-Smt · CVE-2023-6309
**Name of the Vulnerable Software and Affected Versions** moses-smt mosesdecoder versions up to 4.0 **Description** A critical issue was found in the mosesdecoder, affecting an unknown part of the file contrib/iSenWeb/trans result.php. The manipulation of the `input1` argument leads to os command injection. The issue has been publicly disclosed and may be exploited. **Recommendations** For versions up to 4.0, update to a version later than 4.0 to resolve the issue. As a temporary workaround, consider restricting access to the contrib/iSenWeb/trans result.php file until a patch is available. Avoid using the `input1` argument in the affected file until the issue is resolved.