Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2008-0244

Опубликовано: 12 янв. 2008
Источник: nvd
CVSS2: 10
EPSS Высокий

Описание

SAP MaxDB 7.6.03 build 007 and earlier allows remote attackers to execute arbitrary commands via "&&" and other shell metacharacters in exec_sdbinfo and other unspecified commands, which are executed when MaxDB invokes cons.exe.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:sap:maxdb:*:*:*:*:*:*:*:*
Версия до 7.6.3_build_007 (включая)

EPSS

Процентиль: 100%
0.89824
Высокий

10 Critical

CVSS2

Дефекты

CWE-20

Связанные уязвимости

ubuntu
почти 18 лет назад

SAP MaxDB 7.6.03 build 007 and earlier allows remote attackers to execute arbitrary commands via "&&" and other shell metacharacters in exec_sdbinfo and other unspecified commands, which are executed when MaxDB invokes cons.exe.

debian
почти 18 лет назад

SAP MaxDB 7.6.03 build 007 and earlier allows remote attackers to exec ...

github
больше 3 лет назад

SAP MaxDB 7.6.03 build 007 and earlier allows remote attackers to execute arbitrary commands via "&&" and other shell metacharacters in exec_sdbinfo and other unspecified commands, which are executed when MaxDB invokes cons.exe.

EPSS

Процентиль: 100%
0.89824
Высокий

10 Critical

CVSS2

Дефекты

CWE-20