Common vulnerabilities and Exposures (CVE)

Skip to main content

Required CVE Record Information

Description

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in RTI Connext Professional (System Designer) allows OS Command Injection.This issue affects Connext Professional: from 7.0.0 before 7.3.0.2, from 6.1.0 before 6.1.2.19.

CVSS 1 Total

ScoreSeverityVersionVector String
8.6HIGH4.0CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Product Status

Learn more

Versions 2 Total

Default Status: unaffected

affected

Authorized Data Publishers