This issue affects ASPECT-Enterprise: through 3.08.03; NEXUS Series: through 3.08.03; MATRIX Series: through 3.08.03.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-54571 | Servlet injection vulnerabilities in ASPECT allow remote code execution if session administrator credentials become compromised. This issue affects ASPECT-Enterprise: through 3.08.03; NEXUS Series: through 3.08.03; MATRIX Series: through 3.08.03. |
Thu, 22 May 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 22 May 2025 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Servlet injection vulnerabilities in ASPECT allow remote code execution if session administrator credentials become compromised. This issue affects ASPECT-Enterprise: through 3.08.03; NEXUS Series: through 3.08.03; MATRIX Series: through 3.08.03. | |
| Title | Authenticated Servlet Command Injection | |
| Weaknesses | CWE-94 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ABB
Published:
Updated: 2025-05-22T18:45:58.964Z
Reserved: 2025-03-17T14:39:19.016Z
Link: CVE-2024-13929
Updated: 2025-05-22T18:38:36.636Z
Status : Deferred
Published: 2025-05-22T18:15:39.660
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-13929
No data.
OpenCVE Enrichment
Updated: 2025-07-13T11:31:01Z
EUVD