CVE Published: 01/02/2024 |
CVE Updated: 02/08/2024 |
CVE Year: 2023 Source: 3DS |
Vendor: Dassault Systèmes |
Product: BIOVIA Materials Studio products Status : PUBLISHED
CVE-2023-6078 Description
An OS Command Injection vulnerability exists in BIOVIA Materials Studio products from Release BIOVIA 2021 through Release BIOVIA 2023. Upload of a specially crafted perl script can lead to arbitrary command execution.
Metrics
CVSS Version: 3.1 |
Base Score: 8.8 HIGH Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H