{"gsd":{"metadata":{"exploitCode":"unknown","remediation":"unknown","reportConfidence":"confirmed","type":"vulnerability"},"osvSchema":{"aliases":["CVE-2024-4301"],"id":"GSD-2024-4301","modified":"2024-04-29T05:02:05.678292Z","schema_version":"1.4.0"}},"namespaces":{"cve.org":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2024-4301","STATE":"RESERVED"},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."}]}},"nvd.nist.gov":{"cve":{"descriptions":[{"lang":"en","value":"N-Reporter and N-Cloud, products of the N-Partner, have an OS Command Injection vulnerability. Remote attackers with normal user privilege can execute arbitrary system commands by manipulating user inputs on a specific page."}],"id":"CVE-2024-4301","lastModified":"2024-04-29T04:15:09.110","metrics":{"cvssMetricV31":[{"cvssData":{"attackComplexity":"LOW","attackVector":"NETWORK","availabilityImpact":"HIGH","baseScore":8.8,"baseSeverity":"HIGH","confidentialityImpact":"HIGH","integrityImpact":"HIGH","privilegesRequired":"LOW","scope":"UNCHANGED","userInteraction":"NONE","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","version":"3.1"},"exploitabilityScore":2.8,"impactScore":5.9,"source":"twcert@cert.org.tw","type":"Primary"}]},"published":"2024-04-29T04:15:09.110","references":[{"source":"twcert@cert.org.tw","url":"https://www.twcert.org.tw/tw/cp-132-7776-035ff-1.html"}],"sourceIdentifier":"twcert@cert.org.tw","vulnStatus":"Received","weaknesses":[{"description":[{"lang":"en","value":"CWE-78"}],"source":"twcert@cert.org.tw","type":"Primary"}]}}}}