Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
HCL BigFix RunBookAI is affected by a Unvalidated Command Input / Potential Command Smuggling vulnerability
Vulnerability Description
HCL BigFix RunBookAI is affected by a Unvalidated Command Input / Potential Command Smuggling vulnerability. A flaw in a component's input handling was identified that could permit unauthorized command execution.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
在命令中使用的特殊元素转义处理不恰当(命令注入)
Vulnerability Title
HCL BigFix RunBookAI 命令注入漏洞
Vulnerability Description
HCL BigFix RunBookAI是印度HCL公司的一个人工智能自动化产品。 HCL BigFix RunBookAI存在命令注入漏洞,该漏洞源于未验证的命令输入或潜在的命令夹带,组件输入处理存在缺陷,可能允许未经授权的命令执行。
CVSS Information
N/A
Vulnerability Type
N/A