Remote Code Execution in cominput.jsp and comoutput.jsp in Northstar Technologies Inc NorthStar Club Management 6.3 allows remote unauthenticated users to inject and execute arbitrary system commands via the unsanitized user-controlled "command" and "commandvalues" parameters.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2022-02-04T18:43:34
Updated: 2024-08-03T22:02:51.815Z
Reserved: 2021-03-29T00:00:00
Link: CVE-2021-29393
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-02-04T19:15:07.797
Modified: 2024-11-21T06:01:01.847
Link: CVE-2021-29393
Redhat
No data.