Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-7981

Опубликовано: 29 апр. 2017
Источник: nvd
CVSS3: 8.8
CVSS2: 9
EPSS Средний

Описание

Tuleap before 9.7 allows command injection via the PhpWiki 1.3.10 SyntaxHighlighter plugin. This occurs in the Project Wiki component because the proc_open PHP function is used within PhpWiki before 1.5.5 with a syntax value in its first argument, and an authenticated Tuleap user can control this value, even with shell metacharacters, as demonstrated by a '<?plugin SyntaxHighlighter syntax="c;id"' line to execute the id command.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:enalean:tuleap:*:*:*:*:*:*:*:*
Версия до 9.7 (исключая)
Конфигурация 2
cpe:2.3:a:phpwiki_project:phpwiki:1.3.10:*:*:*:*:*:*:*

EPSS

Процентиль: 94%
0.13322
Средний

8.8 High

CVSS3

9 Critical

CVSS2

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 8.8
github
больше 3 лет назад

Tuleap before 9.7 allows command injection via the PhpWiki 1.3.10 SyntaxHighlighter plugin. This occurs in the Project Wiki component because the proc_open PHP function is used within PhpWiki before 1.5.5 with a syntax value in its first argument, and an authenticated Tuleap user can control this value, even with shell metacharacters, as demonstrated by a '<?plugin SyntaxHighlighter syntax="c;id"' line to execute the id command.

EPSS

Процентиль: 94%
0.13322
Средний

8.8 High

CVSS3

9 Critical

CVSS2

Дефекты

CWE-78