CVE

CVE-2023-25550

CVE-2023-25550

A CWE-94: Improper Control of Generation of Code (‘Code Injection’) vulnerability exists that
allows remote code execution via the “hostname� parameter when maliciously crafted hostname
syntax is entered.

Affected products: StruxureWare Data Center Expert (V7.9.2 and prior)

Source: CVE-2023-25550

Exit mobile version