PT-2024-37956 · Veribase · Veribase Order Management

Tunahan Tekeoğlu

·

Published

2024-08-12

·

Updated

2026-06-03

·

CVE-2024-6917

CVSS v4.0

10

Critical

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H
Name of the Vulnerable Software and Affected Versions Veribase Order Management versions prior to v4.010.2
Description The issue is related to an OS Command Injection vulnerability, which allows unauthorized access due to improper neutralization of special elements used in an OS command. This vulnerability affects Veribase Order Management software, enabling OS Command Injection exploits.
Recommendations For versions prior to v4.010.2, update to version v4.010.2 or later to resolve the issue. As a temporary workaround, consider restricting access to sensitive areas of the software to minimize the risk of exploitation.

Fix

OS Command Injection

Weakness Enumeration

Related Identifiers

CVE-2024-6917

Affected Products

Veribase Order Management