Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-6610

Опубликовано: 03 янв. 2008
Источник: nvd
CVSS2: 10
EPSS Низкий

Описание

unp 1.0.12, and other versions before 1.0.14, does not properly escape file names, which might allow context-dependent attackers to execute arbitrary commands via shell metacharacters in a filename argument. NOTE: this might only be a vulnerability when unp is invoked by a third party product.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:debian:unp:*:*:*:*:*:*:*:*
Версия до 1.0.12 (включая)

EPSS

Процентиль: 75%
0.00928
Низкий

10 Critical

CVSS2

Дефекты

NVD-CWE-noinfo

Связанные уязвимости

ubuntu
почти 18 лет назад

unp 1.0.12, and other versions before 1.0.14, does not properly escape file names, which might allow context-dependent attackers to execute arbitrary commands via shell metacharacters in a filename argument. NOTE: this might only be a vulnerability when unp is invoked by a third party product.

debian
почти 18 лет назад

unp 1.0.12, and other versions before 1.0.14, does not properly escape ...

github
больше 3 лет назад

unp 1.0.12, and other versions before 1.0.14, does not properly escape file names, which might allow context-dependent attackers to execute arbitrary commands via shell metacharacters in a filename argument. NOTE: this might only be a vulnerability when unp is invoked by a third party product.

EPSS

Процентиль: 75%
0.00928
Низкий

10 Critical

CVSS2

Дефекты

NVD-CWE-noinfo