Vulnerability Details CVE-2023-45356
Atos Unify OpenScape 4000 Platform V10 R1 before Hotfix V10 R1.42.2 4000 and Manager Platform V10 R1 before Hotfix V10 R1.42.2 allow command injection by an authenticated attacker into the platform operating system, leading to administrative access, via dtb pages of the platform portal. This is also known as OSFOURK-23719.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.008
EPSS Ranking 73.1%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2023-45356
-
cpe:2.3:a:atos:unify_openscape_4000_assistant:10
-
cpe:2.3:a:atos:unify_openscape_4000_manager:10