RULE(RULE ID:337621)

Rule General Information
Release Date: 2023-08-22
Rule Name: Eramba Arbitrary Code Execution Vulnerability (CVE-2023-36255)
Severity:
CVE ID:
Rule Protection Details
Description: An issue in Eramba Limited Eramba Enterprise v.3.19.1 allows a remote attacker to execute arbitrary code via the path parameter in the URL.
Impact: An attacker can execute arbitrary code via a successful exploit in the context of the vulnerable software.
Affected OS: Windows, Linux, Others
Reference: https://trovent.io/security-advisory-2303-01/
http://eramba.com
https://cxsecurity.com/issue/WLB-2023080006
https://cxsecurity.com/cveshow/CVE-2023-36255/
Solutions
Please contact the software vendor to update the software patch.