Code Injection in librenms/librenms
CVE-2023-4977
7.3HIGH
What is CVE-2023-4977?
A code injection vulnerability has been identified in the LibreNMS software, which could allow an attacker to execute arbitrary code on systems running affected versions. This flaw, present in versions prior to 23.9.0, poses significant security risks, potentially enabling unauthorized access or manipulation of the system. Users are advised to update to the latest version to mitigate this risk. For detailed information, refer to the commit made by the LibreNMS team and related reports.
Affected Version(s)
librenms/librenms < 23.9.0