Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-4487

Опубликовано: 13 янв. 2010
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.8

Описание

nginx 0.7.64 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator.

РелизСтатусПримечание
dapper

DNE

devel

ignored

hardy

ignored

end of life
intrepid

ignored

end of life, was needed
jaunty

ignored

end of life
karmic

ignored

end of life
lucid

ignored

maverick

ignored

end of life
natty

ignored

oneiric

ignored

Показывать по

Ссылки на источники

EPSS

Процентиль: 75%
0.00932
Низкий

6.8 Medium

CVSS2

Связанные уязвимости

redhat
больше 15 лет назад

nginx 0.7.64 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator.

nvd
больше 15 лет назад

nginx 0.7.64 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator.

msrc
больше 4 лет назад

Описание отсутствует

debian
больше 15 лет назад

nginx 0.7.64 writes data to a log file without sanitizing non-printabl ...

github
около 3 лет назад

nginx 0.7.64 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator.

EPSS

Процентиль: 75%
0.00932
Низкий

6.8 Medium

CVSS2