Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2015-5164

Опубликовано: 18 окт. 2017
Источник: nvd
CVSS3: 7.2
CVSS2: 9
EPSS Низкий

Описание

The Qpid server on Red Hat Satellite 6 does not properly restrict message types, which allows remote authenticated users with administrative access on a managed content host to execute arbitrary code via a crafted message, related to a pickle processing problem in pulp.

Ссылки

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:a:pulpproject:qpid:-:*:*:*:*:*:*:*
cpe:2.3:o:redhat:satellite:6.0:*:*:*:*:*:*:*

EPSS

Процентиль: 82%
0.01696
Низкий

7.2 High

CVSS3

9 Critical

CVSS2

Дефекты

CWE-502

Связанные уязвимости

redhat
больше 10 лет назад

The Qpid server on Red Hat Satellite 6 does not properly restrict message types, which allows remote authenticated users with administrative access on a managed content host to execute arbitrary code via a crafted message, related to a pickle processing problem in pulp.

CVSS3: 7.2
github
больше 3 лет назад

The Qpid server on Red Hat Satellite 6 does not properly restrict message types, which allows remote authenticated users with administrative access on a managed content host to execute arbitrary code via a crafted message, related to a pickle processing problem in pulp.

EPSS

Процентиль: 82%
0.01696
Низкий

7.2 High

CVSS3

9 Critical

CVSS2

Дефекты

CWE-502