Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-4511

Опубликовано: 22 июл. 2014
Источник: debian
EPSS Высокий

Описание

Gitlist before 0.5.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the file name in the URI of a request for a (1) blame, (2) file, or (3) stats page, as demonstrated by requests to blame/master/, master/, and stats/master/.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
gitlistitppackage

EPSS

Процентиль: 100%
0.8273
Высокий

Связанные уязвимости

nvd
около 12 лет назад

Gitlist before 0.5.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the file name in the URI of a request for a (1) blame, (2) file, or (3) stats page, as demonstrated by requests to blame/master/, master/, and stats/master/.

github
больше 4 лет назад

Gitlist before 0.5.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the file name in the URI of a request for a (1) blame, (2) file, or (3) stats page, as demonstrated by requests to blame/master/, master/, and stats/master/.

EPSS

Процентиль: 100%
0.8273
Высокий