Vulnerability Details CVE-2024-10035
Improper Control of Generation of Code ('Code Injection'), Improper Neutralization of Special Elements used in a Command ('Command Injection'), Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in BG-TEK Informatics Security Technologies CoslatV3 allows Command Injection, Privilege Escalation.This issue affects CoslatV3: through 3.1069.
NOTE: The vendor was contacted and it was learned that the product is not supported.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.008
EPSS Ranking 74.3%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2024-10035
-
cpe:2.3:a:bg-tek:coslat:3.0
-
cpe:2.3:a:bg-tek:coslat:3.1069