SmartBear Zephyr Enterprise through 7.15.0 mishandles user-defined input during report generation. This could lead to remote code execution by unauthenticated users.
References
Link Resource
https://smartbear.com/security/cve/ Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2023-03-08T00:00:00

Updated: 2023-03-08T00:00:00

Reserved: 2023-01-10T00:00:00


Link: CVE-2023-22889

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-03-08T21:15:10.643

Modified: 2023-03-14T19:37:28.607


Link: CVE-2023-22889

JSON object: View

cve-icon Redhat Information

No data.

CWE