PowerJob.job.save.processorInfo.Command.Injection

description-logoDescription

This indicates an attack attempt to exploit a Command Injection Vulnerability in PowerJob.
The vulnerability is due to insufficient validation when handling user-supplied inputs. A remote, unauthenticated attacker could exploit this vulnerability by sending a maliciously crafted request to the target server. Successful exploitation can lead to arbitrary command execution within the context of the system.

affected-products-logoAffected Products

PowerJob up to 4.3.3

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Currently we are unaware of any vendor supplied patch for this issue.

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Status Detail
2024-07-18 28.829
Modified
Default_action:pass:drop
2024-07-09 28.823
New