CVE-2024-0325: Command Injection in Helix Sync
Published Feb 1, 2024
·Updated
In Helix Sync versions prior to 2024.1, a local command injection was identified. Reported by Bryan Riggins.
Affected Software
1 affected component
Perforce Helix Sync<2024.1
Event History
Feb 1, 2024
CVE Published
via MITRE·10:03 PM
Data Sourced
via MITRE·10:03 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-0325?
CVE-2024-0325 is classified as a local command injection vulnerability.
2
How do I fix CVE-2024-0325?
To remediate CVE-2024-0325, upgrade your Helix Sync version to 2024.1 or later.
3
What versions of Helix Sync are affected by CVE-2024-0325?
Helix Sync versions prior to 2024.1 are affected by CVE-2024-0325.
4
Who reported CVE-2024-0325?
CVE-2024-0325 was reported by security researcher Bryan Riggins.
5
What type of vulnerability is CVE-2024-0325?
CVE-2024-0325 is categorized as a local command injection vulnerability.