Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2008-3076

Опубликовано: 21 фев. 2009
Источник: nvd
CVSS2: 9.3
EPSS Средний

Описание

The Netrw plugin 125 in netrw.vim in Vim 7.2a.10 allows user-assisted attackers to execute arbitrary code via shell metacharacters in filenames used by the execute and system functions within the (1) mz and (2) mc commands, as demonstrated by the netrw.v2 and netrw.v3 test cases. NOTE: this issue reportedly exists because of an incomplete fix for CVE-2008-2712.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:vim:vim:7.2a.10:*:*:*:*:*:*:*

EPSS

Процентиль: 93%
0.10902
Средний

9.3 Critical

CVSS2

Дефекты

CWE-78

Связанные уязвимости

ubuntu
больше 16 лет назад

The Netrw plugin 125 in netrw.vim in Vim 7.2a.10 allows user-assisted attackers to execute arbitrary code via shell metacharacters in filenames used by the execute and system functions within the (1) mz and (2) mc commands, as demonstrated by the netrw.v2 and netrw.v3 test cases. NOTE: this issue reportedly exists because of an incomplete fix for CVE-2008-2712.

redhat
около 17 лет назад

The Netrw plugin 125 in netrw.vim in Vim 7.2a.10 allows user-assisted attackers to execute arbitrary code via shell metacharacters in filenames used by the execute and system functions within the (1) mz and (2) mc commands, as demonstrated by the netrw.v2 and netrw.v3 test cases. NOTE: this issue reportedly exists because of an incomplete fix for CVE-2008-2712.

debian
больше 16 лет назад

The Netrw plugin 125 in netrw.vim in Vim 7.2a.10 allows user-assisted ...

github
больше 3 лет назад

The Netrw plugin 125 in netrw.vim in Vim 7.2a.10 allows user-assisted attackers to execute arbitrary code via shell metacharacters in filenames used by the execute and system functions within the (1) mz and (2) mc commands, as demonstrated by the netrw.v2 and netrw.v3 test cases. NOTE: this issue reportedly exists because of an incomplete fix for CVE-2008-2712.

EPSS

Процентиль: 93%
0.10902
Средний

9.3 Critical

CVSS2

Дефекты

CWE-78