CVE-2021-30358

Description

Mobile Access Portal Native Applications whos path is defined by the administrator with environment variables may run applications from other locations by the Mobile Access Portal Agent.

Risk Information

Base Score
7.2
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.51

Associated Vulnerability

VulnerabilityOS Platform
Improper Neutralization of Special Elements used in an OS Command (OS Command Injection) Vulnerability (CVE-2021-30358)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234