ytti oxidized-web
cpe:2.3:a:oxidized_web_project:oxidized_web:*:*:*:*:oxidized:*:*
- < 0.15.0
A vulnerability in Oxidized Web versions prior to 0.15.0 allows an unauthenticated user to take control of the Linux user account running the application. This issue arises from the RANCID migration page, which could be exploited by sending crafted requests. The vulnerability has been addressed by removing the migration page in version 0.15.0.
Exploitation of this vulnerability could lead to unauthorized control over the Linux user account running Oxidized Web.
Users can upgrade to Oxidized Web version 0.15.0 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.