CVE-2023-29474: Command Injection
inventory in Atos Unify OpenScape 4000 Platform and OpenScape 4000 Manager Platform 10 R1 before 10 R1.34.4 allows an unauthenticated attacker to run arbitrary commands on the platform operating system and achieve administrative access, aka OSFOURK-23552.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this vulnerability?
The vulnerability ID of this vulnerability is CVE-2023-29474.
What is the severity level of CVE-2023-29474?
The severity level of CVE-2023-29474 is critical with a score of 9.8.
What software is affected by CVE-2023-29474?
Atos Unify OpenScape 4000 Platform and OpenScape 4000 Manager Platform 10 R1 before 10 R1.34.4 are affected by CVE-2023-29474.
How does CVE-2023-29474 impact the affected software?
CVE-2023-29474 allows an unauthenticated attacker to run arbitrary commands on the platform operating system and achieve administrative access.
Is there a fix available for CVE-2023-29474?
Yes, updating to version 10 R1.34.4 or later of Atos Unify OpenScape 4000 Platform and OpenScape 4000 Manager Platform effectively fixes CVE-2023-29474.