First published: Thu Feb 01 2024(Updated: )
An OS Command Injection vulnerability exists in BIOVIA Materials Studio products from Release BIOVIA 2021 through Release BIOVIA 2023. Upload of a specially crafted perl script can lead to arbitrary command execution.
Credit: 3DS.Information-Security@3ds.com
Affected Software | Affected Version | How to fix |
---|---|---|
3ds Biovia Materials Studio | >=2021<=2023 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-6078 has been classified as a critical severity vulnerability due to its potential for arbitrary command execution.
To mitigate CVE-2023-6078, users should update BIOVIA Materials Studio to the latest version released after 2023.
CVE-2023-6078 affects BIOVIA Materials Studio products from Release BIOVIA 2021 through Release BIOVIA 2023.
CVE-2023-6078 is categorized as an OS Command Injection vulnerability.
An attacker can exploit CVE-2023-6078 by uploading a specially crafted perl script that triggers arbitrary command execution.