"value":"\nAn Improper Neutralization of Special Elements used in a command vulnerability in ESM prior to version 11.6.9 allows a remote administrator to execute arbitrary code as root on the ESM. This is possible as the input isn't correctly sanitized when adding a new data source.\n\n"
}
]
},
"problemtype":{
"problemtype_data":[
{
"description":[
{
"lang":"eng",
"value":"CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection')",
"value":"\n\n<span style=\"background-color: rgb(255, 255, 255);\">To remediate this issue, customers on ESM 11.6.x should update to version 11.6.9.</span>\n\n<br>"
}
],
"value":"\nTo remediate this issue, customers on ESM 11.6.x should update to version 11.6.9.\n\n\n"