CVE-2023-24776

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in packagist/funadmin/funadmin

Identifiers

GHSA-7g53-jj25-jhgr, CVE-2023-24776

Package Slug

packagist/funadmin/funadmin

Vulnerability

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

Description

Funadmin v3.2.0 was discovered to contain a remote code execution (RCE) vulnerability via the component \controller\Addon.php.

Affected Versions

All versions up to 3.2.0

Solution

Unfortunately, there is no solution available yet.

Last Modified

2023-03-22

source