CVE-2024-24892

I

mproper Neutralization of Special Elements used in an OS Command ('OS Command Injection'), Improper Privilege Management vulnerability in openEuler migration-tools on Linux allows Command Injection, Restful Privilege Elevation. This vulnerability is associated with program files https://gitee.Com/openeuler/migration-tools/blob/master/index.Py. This issue affects migration-tools: from 1.0.0 through 1.0.1.

Configurations

No configuration.

History

21 Nov 2024, 08:59

Type Values Removed Values Added
References () https://gitee.com/src-openeuler/migration-tools/pulls/12 - () https://gitee.com/src-openeuler/migration-tools/pulls/12 -
References () https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2024-1275 - () https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2024-1275 -

Information

Published : 2024-03-25 07:15

Updated : 2024-11-21 08:59


NVD link : CVE-2024-24892

Mitre link : CVE-2024-24892

CVE.ORG link : CVE-2024-24892


JSON object : View

Products Affected

No product.

CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

CWE-269

Improper Privilege Management