CVE-2021-44079: Command Injection
Published Nov 22, 2021
·Updated
In the wazuh-slack active response script in Wazuh 4.2.x before 4.2.5, untrusted user agents are passed to a curl command line, potentially resulting in remote code execution.
Affected Software
1 affected component
Wazuh Wazuh>=4.2.0<4.2.5
Remediation
Patch Available
Event History
Nov 22, 2021
CVE Published
via MITRE·07:00 AM
Data Sourced
via MITRE·07:00 AM
Description
Data Sourced
via NVD·07:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2021-44079?
CVE-2021-44079 is classified as a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2021-44079?
To fix CVE-2021-44079, upgrade Wazuh to version 4.2.5 or later.
3
What is the impact of CVE-2021-44079?
CVE-2021-44079 can allow untrusted user agents to execute arbitrary code on the vulnerable system.
4
Which versions of Wazuh are affected by CVE-2021-44079?
CVE-2021-44079 affects Wazuh versions from 4.2.0 to 4.2.4.
5
Is there a workaround for CVE-2021-44079 before updating?
There is no official workaround for CVE-2021-44079, so it is recommended to apply the upgrade as soon as possible.