Описание
logwatch.pl in Logwatch 7.3.6 allows remote attackers to execute arbitrary commands via shell metacharacters in a log file name, as demonstrated via a crafted username to a Samba server.
Релиз | Статус | Примечание |
---|---|---|
dapper | released | 7.1-2ubuntu0.1 |
devel | released | 7.3.6.cvs20090906-1ubuntu4 |
hardy | released | 7.3.6-1ubuntu1.1 |
karmic | released | 7.3.6.cvs20090906-1ubuntu1.1 |
lucid | released | 7.3.6.cvs20090906-1ubuntu2.1 |
maverick | released | 7.3.6.cvs20090906-1ubuntu3.1 |
upstream | needs-triage |
Показывать по
EPSS
10 Critical
CVSS2
Связанные уязвимости
logwatch.pl in Logwatch 7.3.6 allows remote attackers to execute arbitrary commands via shell metacharacters in a log file name, as demonstrated via a crafted username to a Samba server.
logwatch.pl in Logwatch 7.3.6 allows remote attackers to execute arbitrary commands via shell metacharacters in a log file name, as demonstrated via a crafted username to a Samba server.
logwatch.pl in Logwatch 7.3.6 allows remote attackers to execute arbit ...
logwatch.pl in Logwatch 7.3.6 allows remote attackers to execute arbitrary commands via shell metacharacters in a log file name, as demonstrated via a crafted username to a Samba server.
EPSS
10 Critical
CVSS2