NOTE: The vendor was contacted and it was learned that the product is not supported.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-32879 | Improper Control of Generation of Code ('Code Injection') vulnerability in BG-TEK Informatics Security Technologies CoslatV3 allows Command Injection.This issue affects CoslatV3: through 3.1069. NOTE: The vendor was contacted and it was learned that the product is not supported. |
| Link | Providers |
|---|---|
| https://www.usom.gov.tr/bildirim/tr-24-1814 |
|
Tue, 14 Oct 2025 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Control of Generation of Code ('Code Injection') vulnerability in BG-TEK Informatics Security Technologies CoslatV3 allows Command Injection.This issue affects CoslatV3: through 3.1069. NOTE: The vendor was contacted and it was learned that the product is not supported. | Improper Control of Generation of Code ('Code Injection'), Improper Neutralization of Special Elements used in a Command ('Command Injection'), Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in BG-TEK Informatics Security Technologies CoslatV3 allows Command Injection, Privilege Escalation.This issue affects CoslatV3: through 3.1069. NOTE: The vendor was contacted and it was learned that the product is not supported. |
| Weaknesses | CWE-77 CWE-78 |
Fri, 08 Nov 2024 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Bg-tek coslat
|
|
| CPEs | cpe:2.3:a:bg-tek:coslat:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Bg-tek coslat
|
|
| Metrics |
cvssV3_1
|
Mon, 04 Nov 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Bg-tek
Bg-tek coslatv3 Firmware |
|
| CPEs | cpe:2.3:o:bg-tek:coslatv3_firmware:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Bg-tek
Bg-tek coslatv3 Firmware |
|
| Metrics |
ssvc
|
Mon, 04 Nov 2024 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Control of Generation of Code ('Code Injection') vulnerability in BG-TEK Informatics Security Technologies CoslatV3 allows Command Injection.This issue affects CoslatV3: through 3.1069. NOTE: The vendor was contacted and it was learned that the product is not supported. | |
| Title | Code Injection in BG-TEK's CoslatV3 | |
| Weaknesses | CWE-94 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: TR-CERT
Published:
Updated: 2025-10-14T12:21:57.783Z
Reserved: 2024-10-16T14:04:46.589Z
Link: CVE-2024-10035
Updated: 2024-11-04T15:16:17.995Z
Status : Modified
Published: 2024-11-04T12:16:08.880
Modified: 2025-10-14T13:15:33.537
Link: CVE-2024-10035
No data.
OpenCVE Enrichment
No data.
EUVD