CVE-2023-45351: Command Injection
Published Oct 9, 2023
·Updated
Atos Unify OpenScape 4000 Assistant V10 R1 before V10 R1.42.1, 4000 Assistant V10 R0, 4000 Manager V10 R1 before V10 R1.42.1, and 4000 Manager V10 R0 allow Authenticated Command Injection via AShbr. This is also known as OSFOURK-24039.
Affected Software
4 affected components
Atos Unify OpenScape 4000 Assistant=10-r0
Atos Unify OpenScape 4000 Assistant=10-r1
Atos Unify OpenScape 4000 Manager=10-r0
Atos Unify OpenScape 4000 Manager=10-r1
Event History
Oct 9, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID is CVE-2023-45351.
2
What is the severity of CVE-2023-45351?
CVE-2023-45351 has a severity level of 8.8 (high).
3
Which software versions are affected by CVE-2023-45351?
Atos Unify OpenScape 4000 Assistant versions 10-r0 and 10-r1, and Atos Unify OpenScape 4000 Manager versions 10-r0 and 10-r1 are affected.
4
What is the vulnerability description of CVE-2023-45351?
CVE-2023-45351 is a vulnerability in Atos Unify OpenScape 4000 Assistant and Manager that allows authenticated command injection via AShbr.
5
How can I fix CVE-2023-45351?
Apply the appropriate security patches or upgrades provided by Atos Unify to fix CVE-2023-45351.