PT-2024-27779 · Mangoos · Mangoos

Published

2024-10-25

·

Updated

2024-11-05

·

CVE-2024-37845

CVSS v3.1

7.2

High

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions MangoOS versions prior to 5.2.0
Description The issue is an authenticated remote code execution (RCE) vulnerability via the Active Process Command feature.
Recommendations For versions prior to 5.2.0, update to version 5.2.0 or later to resolve the issue.

Exploit

Fix

Code Injection

OS Command Injection

Weakness Enumeration

Related Identifiers

CVE-2024-37845

Affected Products

Mangoos