PT-2023-29525 · Atos · Atos Unify Openscape 4000 Manager

Published

2023-10-08

·

Updated

2023-10-12

·

CVE-2023-45350

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Atos Unify OpenScape 4000 Manager versions V10 R0 through V10 R1 before V10 R1.42.1
Description The issue allows an authenticated attacker to potentially run arbitrary code via AScm, leading to privilege escalation. This may enable the attacker to perform actions that would normally be restricted.
Recommendations For versions V10 R0 through V10 R1 before V10 R1.42.1, update to version V10 R1.42.1 or later to resolve the issue.

Fix

Related Identifiers

CVE-2023-45350

Affected Products

Atos Unify Openscape 4000 Manager