Back to overview

CVE-2023-39424

CRITICAL
9.9
CVSS 3.1
Description
A vulnerability in RDPngFileUpload.dll, as used in the IRM Next Generation booking system, allows a remote attacker to upload arbitrary content (such as a web shell component) to the SQL database and execute it with SYSTEM privileges. This vulnerability requires authentication to be exploited but can be paired with another vulnerability in the platform (CVE-2023-39420, which grants access to hardcoded credentials) to carry the attack without having assigned credentials. 

Metadata

CVE ID
CVE-2023-39424
State
PUBLISHED
Assigner
Bitdefender
Reserved
2023-08-01 15:26 UTC
Published
2023-09-07 12:25 UTC
Last updated
2024-09-26 19:11 UTC
Primary CWE
CWE-74
CWE-74 Improper Neutralization of Special Elements in Output…
Vendor / Product
Resort Data Processing, Inc. / IRM Next Generation
Sources
cve.org  ·  NVD

Severity & Metrics

9.9 CRITICAL CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
SSVC — CISA Coordinator
Exploitation
none
Automatable
no
Tech. Impact
total
Affected products (1)
VendorProductPlatformVersions
Resort Data Processing, Inc. IRM Next Generation 1.0.0.0
Weakness (CWE)
CWESourceDescription
CWE-74 cna CWE-74 Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVSS scores (1)
ScoreSeverityVersionSourceVector
9.9 CRITICAL 3.1 cna CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Back to overview