CVE-2024-53412
Last modified
CVE-2024-53412 is a high-severity vulnerability rated 8.4/10 on the CVSS scale. Command injection in the connect function in NietThijmen ShoppingCart 0.0.2 allows an attacker to execute arbitrary shell commands and achieve remote code execution via injection of malicious payloads into the Port field. EPSS estimates a 0.56% chance of exploitation in the next 30 days.
Description
Command injection in the connect function in NietThijmen ShoppingCart 0.0.2 allows an attacker to execute arbitrary shell commands and achieve remote code execution via injection of malicious payloads into the Port field
Metrics
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2024-53412?
How severe is CVE-2024-53412?
How do I fix CVE-2024-53412?
Are you affected by CVE-2024-53412?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
