CVE-2023-30261 Security advisory
Multiple command injection vulnerabilities exist in openWB version 1.7 and older. Each allows an unauthenticated user to execute arbitrary OS commands on the host. In the default configuration of openWB, commands can be executed with root privileges.
Affected products
- Introduced in openWB version 1.6 (commit b5d545c)
- Present in …