CVE-2024-52058

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in RTI Connext Professional (System Designer) allows OS Command Injection.This issue affects Connext Professional: from 7.0.0 before 7.3.0.2, from 6.1.0 before 6.1.2.19.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:rti:connext_professional:*:*:*:*:*:*:*:*
cpe:2.3:a:rti:connext_professional:*:*:*:*:*:*:*:*

History

02 Oct 2025, 13:35

Type Values Removed Values Added
Summary
  • (es) La vulnerabilidad de neutralización incorrecta de elementos especiales utilizados en un comando del sistema operativo ('Inyección de comando del sistema operativo') en RTI Connext Professional (System Designer) permite la inyección de comandos del sistema operativo. Este problema afecta a Connext Professional: desde 7.0.0 antes de 7.3.0.2, desde 6.1.0 antes de 6.1.2.19.
CPE cpe:2.3:a:rti:connext_professional:*:*:*:*:*:*:*:*
References () https://www.rti.com/vulnerabilities/#cve-2024-52058 - () https://www.rti.com/vulnerabilities/#cve-2024-52058 - Vendor Advisory
First Time Rti connext Professional
Rti
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8

13 Dec 2024, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-13 11:15

Updated : 2025-10-02 13:35


NVD link : CVE-2024-52058

Mitre link : CVE-2024-52058

CVE.ORG link : CVE-2024-52058


JSON object : View

Products Affected

rti

  • connext_professional
CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')