CVE-2023-6309

    Dashboard / Vulnerabilities / CVE-2023-6309

    CVE-2023-6309

    Published: 27 Nov 2023Last Modified: 12 Aug 2026

    Summary: moses-smt mosesdecoder trans_result.php os command injection

    Details: A vulnerability, which was classified as critical, was found in moses-smt mosesdecoder up to 4.0. This affects an unknown part of the file contrib/iSenWeb/trans_result.php. The manipulation of the argument input1 leads to os command injection. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-246135.

    Affected packages

    Package

    Name:

    Purl:

    Affected ranges

    Type: GIT

    Events:

    Introduced- 65c75ff0739ee2f88fc423ec1ad074e1b9b4a9b8

    Affected versions

    4.0

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High
    CVE-2023-6309 | CVE-DB