Looking for the vulnerability index of Invicti's legacy products?
PHP Improper Neutralization of Special Elements used in a Command (Command Injection) Vulnerability - CVE-2024-3566 - Vulnerability Database

PHP Improper Neutralization of Special Elements used in a Command (Command Injection) Vulnerability - CVE-2024-3566

Critical
Reference: CVE-2024-3566
Title: PHP Improper Neutralization of Special Elements used in a Command (Command Injection) Vulnerability
Overview:

A command inject vulnerability allows an attacker to perform command injection on Windows applications that indirectly depend on the CreateProcess function when the specific conditions are satisfied.