Vulnerabilities > Controlup > Real Time Agent > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-01-04 CVE-2021-45912 OS Command Injection vulnerability in Controlup Real-Time Agent
An unauthenticated Named Pipe channel in Controlup Real-Time Agent (cuAgent.exe) before 8.5 potentially allows an attacker to run OS commands via the ProcessActionRequest WCF method.
local
low complexity
controlup CWE-78
4.6