Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2008-2383

Опубликовано: 02 янв. 2009
Источник: nvd
CVSS2: 9.3
EPSS Низкий

Описание

CRLF injection vulnerability in xterm allows user-assisted attackers to execute arbitrary commands via LF (aka \n) characters surrounding a command name within a Device Control Request Status String (DECRQSS) escape sequence in a text file, a related issue to CVE-2003-0063 and CVE-2003-0071.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:invisible-island:xterm:_nil_:*:*:*:*:*:*:*

EPSS

Процентиль: 82%
0.01777
Низкий

9.3 Critical

CVSS2

Дефекты

CWE-94

Связанные уязвимости

ubuntu
больше 16 лет назад

CRLF injection vulnerability in xterm allows user-assisted attackers to execute arbitrary commands via LF (aka \n) characters surrounding a command name within a Device Control Request Status String (DECRQSS) escape sequence in a text file, a related issue to CVE-2003-0063 and CVE-2003-0071.

redhat
больше 16 лет назад

CRLF injection vulnerability in xterm allows user-assisted attackers to execute arbitrary commands via LF (aka \n) characters surrounding a command name within a Device Control Request Status String (DECRQSS) escape sequence in a text file, a related issue to CVE-2003-0063 and CVE-2003-0071.

debian
больше 16 лет назад

CRLF injection vulnerability in xterm allows user-assisted attackers t ...

github
около 3 лет назад

CRLF injection vulnerability in xterm allows user-assisted attackers to execute arbitrary commands via LF (aka \n) characters surrounding a command name within a Device Control Request Status String (DECRQSS) escape sequence in a text file, a related issue to CVE-2003-0063 and CVE-2003-0071.

oracle-oval
больше 16 лет назад

ELSA-2009-0018: xterm security update (IMPORTANT)

EPSS

Процентиль: 82%
0.01777
Низкий

9.3 Critical

CVSS2

Дефекты

CWE-94