Description
Telenium Online Web Application is vulnerable due to a Perl script that is called to load the login page. Due to improper input validation, an attacker can inject arbitrary Perl code through a crafted HTTP request, leading to remote code execution on the server.
Problem types
Product status
Any version
Credits
Blake Rash and Bryan Sears reported this vulnerability to CISA.
References
www.cisa.gov/news-events/ics-advisories/icsa-24-263-04
github.com/...p/csaf_files/OT/white/2024/icsa-24-263-04.json
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.