National Cyber Warfare Foundation (NCWF) Forums


CVE-2023-40050


0 user ratings
2023-10-31 16:13:23
milo
CVEs

 - archive -- 
Upload profile either
through API or user interface in Chef Automate prior to and including version 4.10.29 using InSpec
check command with maliciously crafted profile allows remote code execution.

CVE-2023-40050
https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2023-40050
Upload profile either
through API or user interface in Chef Automate prior to and including version 4.10.29 using InSpec
check command with maliciously crafted profile allows remote code execution.

2023-10-31T15:15:09Z

Source: CVEAnnouncements
Source Link: https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2023-40050


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
CVEs



Copyright 2012 through 2024 - National Cyber Warfare Foundation - All rights reserved worldwide.