Описание
The scriptfu network server in GIMP 2.6 does not require authentication, which allows remote attackers to execute arbitrary commands via the python-fu-eval command.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 2.8.0-2ubuntu2 |
| hardy | ignored | end of life |
| lucid | ignored | |
| natty | ignored | end of life |
| oneiric | ignored | |
| precise | ignored | |
| quantal | not-affected | 2.8.0-2ubuntu2 |
| upstream | needs-triage |
Показывать по
Ссылки на источники
EPSS
6.8 Medium
CVSS2
Связанные уязвимости
The scriptfu network server in GIMP 2.6 does not require authentication, which allows remote attackers to execute arbitrary commands via the python-fu-eval command.
The scriptfu network server in GIMP 2.6 does not require authentication, which allows remote attackers to execute arbitrary commands via the python-fu-eval command.
The scriptfu network server in GIMP 2.6 does not require authenticatio ...
The scriptfu network server in GIMP 2.6 does not require authentication, which allows remote attackers to execute arbitrary commands via the python-fu-eval command.
EPSS
6.8 Medium
CVSS2