Логотип exploitDog
bind:"CVE-2017-14867"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2017-14867"

Количество 11

Количество 11

ubuntu логотип

CVE-2017-14867

больше 8 лет назад

Git before 2.10.5, 2.11.x before 2.11.4, 2.12.x before 2.12.5, 2.13.x before 2.13.6, and 2.14.x before 2.14.2 uses unsafe Perl scripts to support subcommands such as cvsserver, which allows attackers to execute arbitrary OS commands via shell metacharacters in a module name. The vulnerable code is reachable via git-shell even without CVS support.

CVSS3: 8.8
EPSS: Низкий
redhat логотип

CVE-2017-14867

больше 8 лет назад

Git before 2.10.5, 2.11.x before 2.11.4, 2.12.x before 2.12.5, 2.13.x before 2.13.6, and 2.14.x before 2.14.2 uses unsafe Perl scripts to support subcommands such as cvsserver, which allows attackers to execute arbitrary OS commands via shell metacharacters in a module name. The vulnerable code is reachable via git-shell even without CVS support.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2017-14867

больше 8 лет назад

Git before 2.10.5, 2.11.x before 2.11.4, 2.12.x before 2.12.5, 2.13.x before 2.13.6, and 2.14.x before 2.14.2 uses unsafe Perl scripts to support subcommands such as cvsserver, which allows attackers to execute arbitrary OS commands via shell metacharacters in a module name. The vulnerable code is reachable via git-shell even without CVS support.

CVSS3: 8.8
EPSS: Низкий
msrc логотип

CVE-2017-14867

5 месяцев назад

Git before 2.10.5, 2.11.x before 2.11.4, 2.12.x before 2.12.5, 2.13.x before 2.13.6, and 2.14.x before 2.14.2 uses unsafe Perl scripts to support subcommands such as cvsserver, which allows attackers to execute arbitrary OS commands via shell metacharacters in a module name. The vulnerable code is reachable via git-shell even without CVS support.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2017-14867

больше 8 лет назад

Git before 2.10.5, 2.11.x before 2.11.4, 2.12.x before 2.12.5, 2.13.x ...

CVSS3: 8.8
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2017:2757-1

больше 8 лет назад

Security update for git

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2017:2614-1

больше 8 лет назад

Security update for git

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2017:2747-1

больше 8 лет назад

Security update for git

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2017:2717-1

больше 8 лет назад

Security update for git

EPSS: Низкий
github логотип

GHSA-h66v-9g4g-85x5

больше 3 лет назад

Git before 2.10.5, 2.11.x before 2.11.4, 2.12.x before 2.12.5, 2.13.x before 2.13.6, and 2.14.x before 2.14.2 uses unsafe Perl scripts to support subcommands such as cvsserver, which allows attackers to execute arbitrary OS commands via shell metacharacters in a module name. The vulnerable code is reachable via git-shell even without CVS support.

CVSS3: 8.8
EPSS: Низкий
fstec логотип

BDU:2017-02354

больше 8 лет назад

Уязвимость распределенной системы управления версиями Git, связанная с недостаточной проверкой вводимых данных, позволяющая нарушителю выполнить произвольные команды операционной системы

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2017-14867

Git before 2.10.5, 2.11.x before 2.11.4, 2.12.x before 2.12.5, 2.13.x before 2.13.6, and 2.14.x before 2.14.2 uses unsafe Perl scripts to support subcommands such as cvsserver, which allows attackers to execute arbitrary OS commands via shell metacharacters in a module name. The vulnerable code is reachable via git-shell even without CVS support.

CVSS3: 8.8
7%
Низкий
больше 8 лет назад
redhat логотип
CVE-2017-14867

Git before 2.10.5, 2.11.x before 2.11.4, 2.12.x before 2.12.5, 2.13.x before 2.13.6, and 2.14.x before 2.14.2 uses unsafe Perl scripts to support subcommands such as cvsserver, which allows attackers to execute arbitrary OS commands via shell metacharacters in a module name. The vulnerable code is reachable via git-shell even without CVS support.

CVSS3: 7.8
7%
Низкий
больше 8 лет назад
nvd логотип
CVE-2017-14867

Git before 2.10.5, 2.11.x before 2.11.4, 2.12.x before 2.12.5, 2.13.x before 2.13.6, and 2.14.x before 2.14.2 uses unsafe Perl scripts to support subcommands such as cvsserver, which allows attackers to execute arbitrary OS commands via shell metacharacters in a module name. The vulnerable code is reachable via git-shell even without CVS support.

CVSS3: 8.8
7%
Низкий
больше 8 лет назад
msrc логотип
CVE-2017-14867

Git before 2.10.5, 2.11.x before 2.11.4, 2.12.x before 2.12.5, 2.13.x before 2.13.6, and 2.14.x before 2.14.2 uses unsafe Perl scripts to support subcommands such as cvsserver, which allows attackers to execute arbitrary OS commands via shell metacharacters in a module name. The vulnerable code is reachable via git-shell even without CVS support.

CVSS3: 8.8
7%
Низкий
5 месяцев назад
debian логотип
CVE-2017-14867

Git before 2.10.5, 2.11.x before 2.11.4, 2.12.x before 2.12.5, 2.13.x ...

CVSS3: 8.8
7%
Низкий
больше 8 лет назад
suse-cvrf логотип
openSUSE-SU-2017:2757-1

Security update for git

7%
Низкий
больше 8 лет назад
suse-cvrf логотип
openSUSE-SU-2017:2614-1

Security update for git

7%
Низкий
больше 8 лет назад
suse-cvrf логотип
SUSE-SU-2017:2747-1

Security update for git

7%
Низкий
больше 8 лет назад
suse-cvrf логотип
SUSE-SU-2017:2717-1

Security update for git

7%
Низкий
больше 8 лет назад
github логотип
GHSA-h66v-9g4g-85x5

Git before 2.10.5, 2.11.x before 2.11.4, 2.12.x before 2.12.5, 2.13.x before 2.13.6, and 2.14.x before 2.14.2 uses unsafe Perl scripts to support subcommands such as cvsserver, which allows attackers to execute arbitrary OS commands via shell metacharacters in a module name. The vulnerable code is reachable via git-shell even without CVS support.

CVSS3: 8.8
7%
Низкий
больше 3 лет назад
fstec логотип
BDU:2017-02354

Уязвимость распределенной системы управления версиями Git, связанная с недостаточной проверкой вводимых данных, позволяющая нарушителю выполнить произвольные команды операционной системы

CVSS3: 8.8
7%
Низкий
больше 8 лет назад

Уязвимостей на страницу