First published: Mon Jun 12 2023(Updated: )
Atos Unify OpenScape 4000 Assistant V10 R1 before V10 R1.42.0 and V10 R1.34.8, Assistant V10 R0, Manager V10 R1 before V10 R1.42.0 and V10 R1.34.8, and Manager V10 R0 allow command injection by authenticated users, aka OSFOURK-23557.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Atos Unify OpenScape 4000 Assistant | =10-r0 | |
Atos Unify OpenScape 4000 Assistant | =10-r1 | |
Atos Unify OpenScape 4000 Assistant | =10-r1.34.4 | |
Atos Unify OpenScape 4000 Manager | =10-r0 | |
Atos Unify OpenScape 4000 Manager | =10-r1 | |
Atos Unify OpenScape 4000 Manager | =10-r1.34.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-35035.
The severity of CVE-2023-35035 is high.
CVE-2023-35035 allows command injection by authenticated users.
Atos Unify OpenScape 4000 Assistant versions 10-r0, 10-r1, and 10-r1.34.4 are affected.
Atos Unify OpenScape 4000 Manager versions 10-r0, 10-r1, and 10-r1.34.4 are affected.
To fix CVE-2023-35035, update Atos Unify OpenScape 4000 Assistant and Manager to version V10 R1.42.0 or V10 R1.34.8.