1 results (0.002 seconds)

CVSS: 8.7EPSS: 20%CPEs: 1EXPL: 2

02 Apr 2021 — A command injection vulnerability in the cookieDomain and relayDomain parameters of Okta Access Gateway before 2020.9.3 allows attackers (with admin access to the Okta Access Gateway UI) to execute OS commands as a privileged system account. Una vulnerabilidad de inyección de comandos en los parámetros cookieDomain y relayDomain de Okta Access Gateway versiones anteriores a 2020.9.3, permite a atacantes (con acceso de administrador a la interfaz de usuario de Okta Access Gateway) ejecutar comandos del siste... • https://packetstorm.news/files/id/163428 • CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') •