Количество 4
Количество 4

CVE-2007-0404
bin/compile-messages.py in Django 0.95 does not quote argument strings before invoking the msgfmt program through the os.system function, which allows attackers to execute arbitrary commands via shell metacharacters in a (1) .po or (2) .mo file.

CVE-2007-0404
bin/compile-messages.py in Django 0.95 does not quote argument strings before invoking the msgfmt program through the os.system function, which allows attackers to execute arbitrary commands via shell metacharacters in a (1) .po or (2) .mo file.
CVE-2007-0404
bin/compile-messages.py in Django 0.95 does not quote argument strings ...
GHSA-qc99-g3wm-hgxr
Django Arbitrary Code Execution
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2007-0404 bin/compile-messages.py in Django 0.95 does not quote argument strings before invoking the msgfmt program through the os.system function, which allows attackers to execute arbitrary commands via shell metacharacters in a (1) .po or (2) .mo file. | CVSS2: 7.5 | 1% Низкий | больше 18 лет назад |
![]() | CVE-2007-0404 bin/compile-messages.py in Django 0.95 does not quote argument strings before invoking the msgfmt program through the os.system function, which allows attackers to execute arbitrary commands via shell metacharacters in a (1) .po or (2) .mo file. | CVSS2: 7.5 | 1% Низкий | больше 18 лет назад |
CVE-2007-0404 bin/compile-messages.py in Django 0.95 does not quote argument strings ... | CVSS2: 7.5 | 1% Низкий | больше 18 лет назад | |
GHSA-qc99-g3wm-hgxr Django Arbitrary Code Execution | 1% Низкий | около 3 лет назад |
Уязвимостей на страницу