linagora Twake
cpe:2.3:a:linagora:twake:*:*:*:*:*:*:*
- v2023.Q1.1223
A command injection vulnerability has been identified in Linagora Twake version 2023.Q1.1223. This issue arises from improper neutralization of special elements used in operating system commands, allowing attackers to inject and execute arbitrary commands. Such exploitation could potentially lead to a complete compromise of the system.
Exploitation of this vulnerability allows for arbitrary command execution on the server where Twake is running, which could lead to a full system compromise.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.