CVE-2024-22836
08.02.2024, 20:15
An OS command injection vulnerability exists in Akaunting v3.1.3 and earlier. An attacker can manipulate the company locale when installing an app to execute system commands on the hosting server.
Vendor | Product | Version |
---|---|---|
akaunting | akaunting | 𝑥 < 3.1.4 |
𝑥
= Vulnerable software versions