Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2008-4101

Опубликовано: 18 сент. 2008
Источник: ubuntu
Приоритет: low
EPSS Средний
CVSS2: 9.3

Описание

Vim 3.0 through 7.x before 7.2.010 does not properly escape characters, which allows user-assisted attackers to (1) execute arbitrary shell commands by entering a K keystroke on a line that contains a ";" (semicolon) followed by a command, or execute arbitrary Ex commands by entering an argument after a (2) "Ctrl-]" (control close-square-bracket) or (3) "g]" (g close-square-bracket) keystroke sequence, a different issue than CVE-2008-2712.

РелизСтатусПримечание
dapper

released

1:6.4-006+2ubuntu6.2
devel

not-affected

2:7.2.025-2ubuntu1
feisty

ignored

end of life, was needed
gutsy

released

1:7.1-056+2ubuntu2.1
hardy

released

1:7.1-138+1ubuntu3.1
intrepid

released

1:7.1.314-3ubuntu3.1
upstream

released

7.2.010

Показывать по

EPSS

Процентиль: 93%
0.10725
Средний

9.3 Critical

CVSS2

Связанные уязвимости

redhat
почти 17 лет назад

Vim 3.0 through 7.x before 7.2.010 does not properly escape characters, which allows user-assisted attackers to (1) execute arbitrary shell commands by entering a K keystroke on a line that contains a ";" (semicolon) followed by a command, or execute arbitrary Ex commands by entering an argument after a (2) "Ctrl-]" (control close-square-bracket) or (3) "g]" (g close-square-bracket) keystroke sequence, a different issue than CVE-2008-2712.

nvd
почти 17 лет назад

Vim 3.0 through 7.x before 7.2.010 does not properly escape characters, which allows user-assisted attackers to (1) execute arbitrary shell commands by entering a K keystroke on a line that contains a ";" (semicolon) followed by a command, or execute arbitrary Ex commands by entering an argument after a (2) "Ctrl-]" (control close-square-bracket) or (3) "g]" (g close-square-bracket) keystroke sequence, a different issue than CVE-2008-2712.

debian
почти 17 лет назад

Vim 3.0 through 7.x before 7.2.010 does not properly escape characters ...

github
около 3 лет назад

Vim 3.0 through 7.x before 7.2.010 does not properly escape characters, which allows user-assisted attackers to (1) execute arbitrary shell commands by entering a K keystroke on a line that contains a ";" (semicolon) followed by a command, or execute arbitrary Ex commands by entering an argument after a (2) "Ctrl-]" (control close-square-bracket) or (3) "g]" (g close-square-bracket) keystroke sequence, a different issue than CVE-2008-2712.

oracle-oval
больше 16 лет назад

ELSA-2008-0580: vim security update (MODERATE)

EPSS

Процентиль: 93%
0.10725
Средний

9.3 Critical

CVSS2