Количество 13
Количество 13
CVE-2026-4802
A flaw was found in Cockpit. This vulnerability allows a remote attacker to achieve arbitrary command execution on the host by exploiting unsanitized user-controlled parameters within crafted links in the system logs user interface (UI). An attacker can inject shell metacharacters and command substitutions into these parameters, leading to the execution of arbitrary shell commands on the affected system. This could result in a complete system compromise.
CVE-2026-4802
A flaw was found in Cockpit. This vulnerability allows a remote attacker to achieve arbitrary command execution on the host by exploiting unsanitized user-controlled parameters within crafted links in the system logs user interface (UI). An attacker can inject shell metacharacters and command substitutions into these parameters, leading to the execution of arbitrary shell commands on the affected system. This could result in a complete system compromise.
CVE-2026-4802
A flaw was found in Cockpit. This vulnerability allows a remote attacker to achieve arbitrary command execution on the host by exploiting unsanitized user-controlled parameters within crafted links in the system logs user interface (UI). An attacker can inject shell metacharacters and command substitutions into these parameters, leading to the execution of arbitrary shell commands on the affected system. This could result in a complete system compromise.
CVE-2026-4802
A flaw was found in Cockpit. This vulnerability allows a remote attack ...
openSUSE-SU-2026:21208-1
Security update for cockpit
RLSA-2026:21700
Important: cockpit security update
RLSA-2026:21676
Important: cockpit security update
RLSA-2026:21468
Important: cockpit security update
GHSA-3wjm-5g86-c6p3
A flaw was found in Cockpit. This vulnerability allows a remote attacker to achieve arbitrary command execution on the host by exploiting unsanitized user-controlled parameters within crafted links in the system logs user interface (UI). An attacker can inject shell metacharacters and command substitutions into these parameters, leading to the execution of arbitrary shell commands on the affected system. This could result in a complete system compromise.
ELSA-2026-21700
ELSA-2026-21700: cockpit security update (IMPORTANT)
ELSA-2026-21676
ELSA-2026-21676: cockpit security update (IMPORTANT)
ELSA-2026-21468
ELSA-2026-21468: cockpit security update (IMPORTANT)
openSUSE-SU-2026:21399-1
Security update for cockpit, cockpit-machines, cockpit-packages, cockpit-podman, cockpit-repos, cockpit-subscriptions
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-4802 A flaw was found in Cockpit. This vulnerability allows a remote attacker to achieve arbitrary command execution on the host by exploiting unsanitized user-controlled parameters within crafted links in the system logs user interface (UI). An attacker can inject shell metacharacters and command substitutions into these parameters, leading to the execution of arbitrary shell commands on the affected system. This could result in a complete system compromise. | CVSS3: 8 | 1% Низкий | 3 месяца назад | |
CVE-2026-4802 A flaw was found in Cockpit. This vulnerability allows a remote attacker to achieve arbitrary command execution on the host by exploiting unsanitized user-controlled parameters within crafted links in the system logs user interface (UI). An attacker can inject shell metacharacters and command substitutions into these parameters, leading to the execution of arbitrary shell commands on the affected system. This could result in a complete system compromise. | CVSS3: 8 | 1% Низкий | 3 месяца назад | |
CVE-2026-4802 A flaw was found in Cockpit. This vulnerability allows a remote attacker to achieve arbitrary command execution on the host by exploiting unsanitized user-controlled parameters within crafted links in the system logs user interface (UI). An attacker can inject shell metacharacters and command substitutions into these parameters, leading to the execution of arbitrary shell commands on the affected system. This could result in a complete system compromise. | CVSS3: 8 | 1% Низкий | 3 месяца назад | |
CVE-2026-4802 A flaw was found in Cockpit. This vulnerability allows a remote attack ... | CVSS3: 8 | 1% Низкий | 3 месяца назад | |
openSUSE-SU-2026:21208-1 Security update for cockpit | 1% Низкий | около 1 месяца назад | ||
RLSA-2026:21700 Important: cockpit security update | 1% Низкий | 2 месяца назад | ||
RLSA-2026:21676 Important: cockpit security update | 1% Низкий | около 2 месяцев назад | ||
RLSA-2026:21468 Important: cockpit security update | 1% Низкий | 2 месяца назад | ||
GHSA-3wjm-5g86-c6p3 A flaw was found in Cockpit. This vulnerability allows a remote attacker to achieve arbitrary command execution on the host by exploiting unsanitized user-controlled parameters within crafted links in the system logs user interface (UI). An attacker can inject shell metacharacters and command substitutions into these parameters, leading to the execution of arbitrary shell commands on the affected system. This could result in a complete system compromise. | CVSS3: 8 | 1% Низкий | 3 месяца назад | |
ELSA-2026-21700 ELSA-2026-21700: cockpit security update (IMPORTANT) | 1% Низкий | 2 месяца назад | ||
ELSA-2026-21676 ELSA-2026-21676: cockpit security update (IMPORTANT) | 1% Низкий | 17 дней назад | ||
ELSA-2026-21468 ELSA-2026-21468: cockpit security update (IMPORTANT) | 1% Низкий | около 1 месяца назад | ||
openSUSE-SU-2026:21399-1 Security update for cockpit, cockpit-machines, cockpit-packages, cockpit-podman, cockpit-repos, cockpit-subscriptions | 11 дней назад |
Уязвимостей на страницу