Описание
xymond in Xymon 4.1.x, 4.2.x, and 4.3.x before 4.3.25 allow remote authenticated users to execute arbitrary commands via shell metacharacters in the adduser_name argument in (1) web/useradm.c or (2) web/chpasswd.c.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | not-affected | 4.3.25-1 |
| bionic | not-affected | 4.3.25-1 |
| cosmic | not-affected | 4.3.25-1 |
| devel | not-affected | 4.3.25-1 |
| disco | not-affected | 4.3.25-1 |
| esm-apps/bionic | not-affected | 4.3.25-1 |
| esm-apps/xenial | not-affected | 4.3.25-1 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was needed] |
| precise | ignored | end of life |
| precise/esm | DNE | precise was needs-triage |
Показывать по
6.5 Medium
CVSS2
8.8 High
CVSS3
Связанные уязвимости
xymond in Xymon 4.1.x, 4.2.x, and 4.3.x before 4.3.25 allow remote authenticated users to execute arbitrary commands via shell metacharacters in the adduser_name argument in (1) web/useradm.c or (2) web/chpasswd.c.
xymond in Xymon 4.1.x, 4.2.x, and 4.3.x before 4.3.25 allow remote aut ...
xymond in Xymon 4.1.x, 4.2.x, and 4.3.x before 4.3.25 allow remote authenticated users to execute arbitrary commands via shell metacharacters in the adduser_name argument in (1) web/useradm.c or (2) web/chpasswd.c.
Уязвимость программного средства мониторинга сети Xymon, позволяющая нарушителю выполнить произвольные команды
6.5 Medium
CVSS2
8.8 High
CVSS3