CVE-2024-37782: Command Injection
An LDAP injection vulnerability in the login page of Gladinet CentreStack v13.12.9934.54690 allows attackers to access sensitive data or execute arbitrary commands via a crafted payload injected into the username field.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-37782?
CVE-2024-37782 is classified as a high-severity vulnerability due to its ability to allow attackers to access sensitive data.
How do I fix CVE-2024-37782?
To fix CVE-2024-37782, ensure that input validation is properly implemented on the username field in the login page of Gladinet CentreStack.
What systems are affected by CVE-2024-37782?
CVE-2024-37782 affects Gladinet CentreStack version 13.12.9934.54690.
What type of attack can be performed using CVE-2024-37782?
CVE-2024-37782 allows for LDAP injection attacks which can lead to unauthorized access and execution of arbitrary commands.
Is there a patch available for CVE-2024-37782?
Currently, it is recommended to check the Gladinet CentreStack updates or contact their support for fixes regarding CVE-2024-37782.