Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2013-6719

Опубликовано: 06 мар. 2014
Источник: nvd
CVSS2: 6
EPSS Низкий

Описание

delivery.php in the Passive Capture Application (PCA) web console in IBM Tealeaf CX 7.x, 8.x through 8.6, 8.7 before FP2, and 8.8 before FP2 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the testconn_host parameter.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:ibm:tealeaf_cx:7.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:tealeaf_cx:7.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:tealeaf_cx:8.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:tealeaf_cx:8.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:tealeaf_cx:8.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:tealeaf_cx:8.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:tealeaf_cx:8.4:*:*:*:*:*:*:*
cpe:2.3:a:ibm:tealeaf_cx:8.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:tealeaf_cx:8.6:*:*:*:*:*:*:*
cpe:2.3:a:ibm:tealeaf_cx:8.7:*:*:*:*:*:*:*
cpe:2.3:a:ibm:tealeaf_cx:8.8:*:*:*:*:*:*:*

EPSS

Процентиль: 91%
0.06372
Низкий

6 Medium

CVSS2

Дефекты

CWE-78

Связанные уязвимости

github
больше 3 лет назад

delivery.php in the Passive Capture Application (PCA) web console in IBM Tealeaf CX 7.x, 8.x through 8.6, 8.7 before FP2, and 8.8 before FP2 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the testconn_host parameter.

EPSS

Процентиль: 91%
0.06372
Низкий

6 Medium

CVSS2

Дефекты

CWE-78