Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2005-0758

Опубликовано: 13 мая 2005
Источник: nvd
CVSS2: 4.6
EPSS Низкий

Описание

zgrep in gzip before 1.3.5 does not properly sanitize arguments, which allows local users to execute arbitrary commands via filenames that are injected into a sed script.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:gnu:gzip:*:*:*:*:*:*:*:*
Версия до 1.3.5 (исключая)
Конфигурация 2

Одно из

cpe:2.3:o:canonical:ubuntu_linux:4.10:*:*:*:*:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:5.04:*:*:*:*:*:*:*

EPSS

Процентиль: 41%
0.00529
Низкий

4.6 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

ubuntu
около 21 года назад

zgrep in gzip before 1.3.5 does not properly sanitize arguments, which allows local users to execute arbitrary commands via filenames that are injected into a sed script.

redhat
больше 21 года назад

zgrep in gzip before 1.3.5 does not properly sanitize arguments, which allows local users to execute arbitrary commands via filenames that are injected into a sed script.

debian
около 21 года назад

zgrep in gzip before 1.3.5 does not properly sanitize arguments, which ...

github
около 4 лет назад

zgrep in gzip before 1.3.5 does not properly sanitize arguments, which allows local users to execute arbitrary commands via filenames that are injected into a sed script.

EPSS

Процентиль: 41%
0.00529
Низкий

4.6 Medium

CVSS2

Дефекты

NVD-CWE-Other