A vulnerability in Imperative framework which allows already-privileged local actors to execute arbitrary shell commands via plugin install/update commands, or maliciously formed environment variables. Impacts Zowe CLI.
                
            References
                    | Link | Resource | 
|---|---|
| https://github.com/zowe/imperative/ | Product | 
Configurations
                    Configuration 1 (hide)
| 
 | 
Information
                Published : 2023-03-01 00:15
Updated : 2023-03-09 11:46
NVD link : CVE-2021-4326
Mitre link : CVE-2021-4326
JSON object : View
CWE
                
                    
                        
                        CWE-77
                        
            Improper Neutralization of Special Elements used in a Command ('Command Injection')
Products Affected
                linuxfoundation
- zowe


