Описание
Cobbler version up to 2.8.2 is vulnerable to a command injection vulnerability in the "add repo" component resulting in arbitrary code execution as root user.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| cobbler | removed | package |
Примечания
https://github.com/cobbler/cobbler/issues/1845
EPSS
Процентиль: 92%
0.05556
Низкий
Связанные уязвимости
CVSS3: 9.8
ubuntu
больше 8 лет назад
Cobbler version up to 2.8.2 is vulnerable to a command injection vulnerability in the "add repo" component resulting in arbitrary code execution as root user.
CVSS3: 8.8
redhat
почти 9 лет назад
Cobbler version up to 2.8.2 is vulnerable to a command injection vulnerability in the "add repo" component resulting in arbitrary code execution as root user.
CVSS3: 9.8
nvd
больше 8 лет назад
Cobbler version up to 2.8.2 is vulnerable to a command injection vulnerability in the "add repo" component resulting in arbitrary code execution as root user.
EPSS
Процентиль: 92%
0.05556
Низкий