Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-4487

Опубликовано: 13 янв. 2010
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.8

Описание

nginx 0.7.64 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator.

РелизСтатусПримечание
dapper

DNE

devel

ignored

hardy

ignored

end of life
intrepid

ignored

end of life, was needed
jaunty

ignored

end of life
karmic

ignored

end of life
lucid

ignored

maverick

ignored

end of life
natty

ignored

oneiric

ignored

Показывать по

Ссылки на источники

EPSS

Процентиль: 80%
0.0141
Низкий

6.8 Medium

CVSS2

Связанные уязвимости

redhat
около 16 лет назад

nginx 0.7.64 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator.

nvd
около 16 лет назад

nginx 0.7.64 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator.

msrc
около 5 лет назад

Описание отсутствует

debian
около 16 лет назад

nginx 0.7.64 writes data to a log file without sanitizing non-printabl ...

github
почти 4 года назад

nginx 0.7.64 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator.

EPSS

Процентиль: 80%
0.0141
Низкий

6.8 Medium

CVSS2

Уязвимость CVE-2009-4487