CVE-2021-4326
01.03.2023, 08:15
A vulnerability in Imperative framework which allows already-privileged local actors to execute arbitrary shell commands via plugin install/update commands, or maliciously formed environment variables. Impacts Zowe CLI.Enginsight
Vendor | Product | Version |
---|---|---|
linuxfoundation | zowe | 1.16.0 ≤ 𝑥 < 1.28.2 |
linuxfoundation | zowe | 2.0.0 ≤ 𝑥 < 2.5.0 |
𝑥
= Vulnerable software versions