PT-2026-78899 · Vsdesk · Vsdesk
CVSS v4.0
8.6
High
| Vector | AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
vsDesk versions prior to 14.0101
Description
An OS command injection flaw exists due to insufficient input filtering. This allows an authenticated attacker with administrative privileges to execute arbitrary operating system commands, which could lead to disrupted web server operations, exposure of sensitive data, or full server compromise.
Recommendations
Update to version 14.0101 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Vsdesk