Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-0156

Опубликовано: 30 июн. 2022
Источник: nvd
CVSS3: 9.8
CVSS2: 7.5
EPSS Низкий

Описание

Awesome spawn contains OS command injection vulnerability, which allows execution of additional commands passed to Awesome spawn as arguments. If untrusted input was included in command arguments, attacker could use this flaw to execute arbitrary command.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:manageiq:awesomespawn:*:*:*:*:*:*:*:*
Версия от 1.2.0 (включая) до 1.5.0 (исключая)

EPSS

Процентиль: 80%
0.01367
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-78
CWE-78

Связанные уязвимости

CVSS3: 8.1
redhat
почти 12 лет назад

Awesome spawn contains OS command injection vulnerability, which allows execution of additional commands passed to Awesome spawn as arguments. If untrusted input was included in command arguments, attacker could use this flaw to execute arbitrary command.

CVSS3: 9.8
github
больше 3 лет назад

OS Command Injection in awesome spawn

EPSS

Процентиль: 80%
0.01367
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-78
CWE-78