CVE-2024-57707: Code Injection
Published Feb 7, 2025
·Updated
An issue in DataEase v1 allows an attacker to execute arbitrary code via the user account and password components.
Affected Software
2 affected components
Dataease DataEase
Dataease DataEase=1.0.0
Event History
Feb 7, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-57707?
CVE-2024-57707 is classified as a critical vulnerability due to its potential for arbitrary code execution.
2
How do I fix CVE-2024-57707?
To fix CVE-2024-57707, update DataEase to the latest version that addresses this vulnerability.
3
What type of attacks can CVE-2024-57707 facilitate?
CVE-2024-57707 allows attackers to execute arbitrary code by exploiting weaknesses in user account and password components.
4
Which software is affected by CVE-2024-57707?
CVE-2024-57707 specifically affects DataEase v1 software.
5
Who is impacted by CVE-2024-57707?
Users and administrators of DataEase v1 are impacted by CVE-2024-57707, particularly those who manage user accounts and passwords.