CVE Published: 03/04/2024 |
CVE Updated: 02/08/2024 |
CVE Year: 2023 Source: Patchstack |
Vendor: VideoWhisper.com |
Product: VideoWhisper Live Streaming Integration Status : PUBLISHED
CVE-2023-25699 Description
Improper Neutralization of Special Elements used in an OS Command (\'OS Command Injection\') vulnerability in VideoWhisper.Com VideoWhisper Live Streaming Integration allows OS Command Injection.This issue affects VideoWhisper Live Streaming Integration: from n/a through 5.5.15.
Metrics
CVSS Version: 3.1 |
Base Score: 9 CRITICAL Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H