Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
CVE's Videos Dagbriefing

← Terug naar CVE-database

CVE-2026-8663

MEDIUM · 6.0 CVSS Gepubliceerd: CWE-78

Beschrijving NL

OS Command Injection-kwetsbaarheid in Rapid7 InsightConnect RPM Plugin op Linux stelt geverifieerde aanvallers in staat om willekeurige OS-commando's uit te voeren via de repo, sleutel of naamparameters vanwege onvoldoende invoerontsmetting in shell-opdrachtconstructie.

Origineel (Engels) tonen

OS Command Injection vulnerability in Rapid7 InsightConnect RPM Plugin on Linux allows authenticated attackers to execute arbitrary OS commands via the repo, key, or name parameters due to insufficient input sanitization in shell command construction.

Vendors

Rapid7 Linux

Affected products

Insightconnect Rpm Linux Kernel

References