Описание
Cobbler version up to 2.8.2 is vulnerable to a command injection vulnerability in the "add repo" component resulting in arbitrary code execution as root user.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| cobbler | removed | package |
Примечания
https://github.com/cobbler/cobbler/issues/1845
EPSS
Процентиль: 76%
0.0095
Низкий
Связанные уязвимости
CVSS3: 9.8
ubuntu
около 8 лет назад
Cobbler version up to 2.8.2 is vulnerable to a command injection vulnerability in the "add repo" component resulting in arbitrary code execution as root user.
CVSS3: 8.8
redhat
больше 8 лет назад
Cobbler version up to 2.8.2 is vulnerable to a command injection vulnerability in the "add repo" component resulting in arbitrary code execution as root user.
CVSS3: 9.8
nvd
около 8 лет назад
Cobbler version up to 2.8.2 is vulnerable to a command injection vulnerability in the "add repo" component resulting in arbitrary code execution as root user.
EPSS
Процентиль: 76%
0.0095
Низкий