Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2023-36479

Опубликовано: 19 сент. 2023
Источник: redhat
CVSS3: 3.5
EPSS Низкий

Описание

Eclipse Jetty Canonical Repository is the canonical repository for the Jetty project. Users of the CgiServlet with a very specific command structure may have the wrong command executed. If a user sends a request to a org.eclipse.jetty.servlets.CGI Servlet for a binary with a space in its name, the servlet will escape the command by wrapping it in quotation marks. This wrapped command, plus an optional command prefix, will then be executed through a call to Runtime.exec. If the original binary name provided by the user contains a quotation mark followed by a space, the resulting command line will contain multiple tokens instead of one. This issue was patched in version 9.4.52, 10.0.16, 11.0.16 and 12.0.0-beta2.

A flaw was found in Jetty's CGI servlet which permits incorrect command execution in specific circumstances such as requests with certain characters in requested filenames. This issue could allow an attacker to run permitted commands other than the one requested.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
OpenShift Serverlessorg.kie.kogito-kogito-appsFix deferred
Red Hat AMQ Broker 7jetty-servletsNot affected
Red Hat Enterprise Linux 7jettyOut of support scope
Red Hat Enterprise Linux 8jettyNot affected
Red Hat Enterprise Linux 9jettyFix deferred
Red Hat JBoss A-MQ 6jetty-servletsOut of support scope
Red Hat JBoss Enterprise Application Platform 7jettyNot affected
Red Hat JBoss Enterprise Application Platform 8jettyNot affected
Red Hat JBoss Enterprise Application Platform Expansion PackjettyNot affected
Red Hat JBoss Fuse 6jetty-servletsOut of support scope

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-149
https://bugzilla.redhat.com/show_bug.cgi?id=2239630jetty: Improper addition of quotation marks to user inputs in CgiServlet

EPSS

Процентиль: 69%
0.00627
Низкий

3.5 Low

CVSS3

Связанные уязвимости

CVSS3: 3.5
ubuntu
почти 2 года назад

Eclipse Jetty Canonical Repository is the canonical repository for the Jetty project. Users of the CgiServlet with a very specific command structure may have the wrong command executed. If a user sends a request to a org.eclipse.jetty.servlets.CGI Servlet for a binary with a space in its name, the servlet will escape the command by wrapping it in quotation marks. This wrapped command, plus an optional command prefix, will then be executed through a call to Runtime.exec. If the original binary name provided by the user contains a quotation mark followed by a space, the resulting command line will contain multiple tokens instead of one. This issue was patched in version 9.4.52, 10.0.16, 11.0.16 and 12.0.0-beta2.

CVSS3: 3.5
nvd
почти 2 года назад

Eclipse Jetty Canonical Repository is the canonical repository for the Jetty project. Users of the CgiServlet with a very specific command structure may have the wrong command executed. If a user sends a request to a org.eclipse.jetty.servlets.CGI Servlet for a binary with a space in its name, the servlet will escape the command by wrapping it in quotation marks. This wrapped command, plus an optional command prefix, will then be executed through a call to Runtime.exec. If the original binary name provided by the user contains a quotation mark followed by a space, the resulting command line will contain multiple tokens instead of one. This issue was patched in version 9.4.52, 10.0.16, 11.0.16 and 12.0.0-beta2.

CVSS3: 3.5
debian
почти 2 года назад

Eclipse Jetty Canonical Repository is the canonical repository for the ...

CVSS3: 3.5
github
почти 2 года назад

Jetty vulnerable to errant command quoting in CGI Servlet

CVSS3: 4.3
fstec
почти 2 года назад

Уязвимость контейнера сервлетов Eclipse Jetty, связанная с неправильной нейтрализацией синтаксиса цитирования, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 69%
0.00627
Низкий

3.5 Low

CVSS3