Логотип exploitDog
bind:"CVE-2022-48624" OR bind:"CVE-2024-32487"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2022-48624" OR bind:"CVE-2024-32487"

Количество 32

Количество 32

rocky логотип

RLSA-2024:4256

около 1 месяца назад

Important: less security update

EPSS: Низкий
oracle-oval логотип

ELSA-2024-4256

12 месяцев назад

ELSA-2024-4256: less security update (IMPORTANT)

EPSS: Низкий
ubuntu логотип

CVE-2024-32487

около 1 года назад

less through 653 allows OS command execution via a newline character in the name of a file, because quoting is mishandled in filename.c. Exploitation typically requires use with attacker-controlled file names, such as the files extracted from an untrusted archive. Exploitation also requires the LESSOPEN environment variable, but this is set by default in many common cases.

CVSS3: 8.6
EPSS: Низкий
redhat логотип

CVE-2024-32487

около 1 года назад

less through 653 allows OS command execution via a newline character in the name of a file, because quoting is mishandled in filename.c. Exploitation typically requires use with attacker-controlled file names, such as the files extracted from an untrusted archive. Exploitation also requires the LESSOPEN environment variable, but this is set by default in many common cases.

CVSS3: 8.6
EPSS: Низкий
nvd логотип

CVE-2024-32487

около 1 года назад

less through 653 allows OS command execution via a newline character in the name of a file, because quoting is mishandled in filename.c. Exploitation typically requires use with attacker-controlled file names, such as the files extracted from an untrusted archive. Exploitation also requires the LESSOPEN environment variable, but this is set by default in many common cases.

CVSS3: 8.6
EPSS: Низкий
msrc логотип

CVE-2024-32487

около 1 года назад

CVSS3: 8.6
EPSS: Низкий
debian логотип

CVE-2024-32487

около 1 года назад

less through 653 allows OS command execution via a newline character i ...

CVSS3: 8.6
EPSS: Низкий
ubuntu логотип

CVE-2022-48624

больше 1 года назад

close_altfile in filename.c in less before 606 omits shell_quote calls for LESSCLOSE.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2022-48624

больше 1 года назад

close_altfile in filename.c in less before 606 omits shell_quote calls for LESSCLOSE.

CVSS3: 7
EPSS: Низкий
nvd логотип

CVE-2022-48624

больше 1 года назад

close_altfile in filename.c in less before 606 omits shell_quote calls for LESSCLOSE.

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2022-48624

4 месяца назад

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2022-48624

больше 1 года назад

close_altfile in filename.c in less before 606 omits shell_quote calls ...

CVSS3: 7.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2060-1

около 1 года назад

Security update for less

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:1598-1

около 1 года назад

Security update for less

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:1550-1

около 1 года назад

Security update for less

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:1534-1

около 1 года назад

Security update for less

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:1192-1

около 1 года назад

Security update for less

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:1190-1

около 1 года назад

Security update for less

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:1189-1

около 1 года назад

Security update for less

EPSS: Низкий
redos логотип

ROS-20240607-02

около 1 года назад

Уязвимость less

CVSS2: 6.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
rocky логотип
RLSA-2024:4256

Important: less security update

около 1 месяца назад
oracle-oval логотип
ELSA-2024-4256

ELSA-2024-4256: less security update (IMPORTANT)

12 месяцев назад
ubuntu логотип
CVE-2024-32487

less through 653 allows OS command execution via a newline character in the name of a file, because quoting is mishandled in filename.c. Exploitation typically requires use with attacker-controlled file names, such as the files extracted from an untrusted archive. Exploitation also requires the LESSOPEN environment variable, but this is set by default in many common cases.

CVSS3: 8.6
0%
Низкий
около 1 года назад
redhat логотип
CVE-2024-32487

less through 653 allows OS command execution via a newline character in the name of a file, because quoting is mishandled in filename.c. Exploitation typically requires use with attacker-controlled file names, such as the files extracted from an untrusted archive. Exploitation also requires the LESSOPEN environment variable, but this is set by default in many common cases.

CVSS3: 8.6
0%
Низкий
около 1 года назад
nvd логотип
CVE-2024-32487

less through 653 allows OS command execution via a newline character in the name of a file, because quoting is mishandled in filename.c. Exploitation typically requires use with attacker-controlled file names, such as the files extracted from an untrusted archive. Exploitation also requires the LESSOPEN environment variable, but this is set by default in many common cases.

CVSS3: 8.6
0%
Низкий
около 1 года назад
msrc логотип
CVSS3: 8.6
0%
Низкий
около 1 года назад
debian логотип
CVE-2024-32487

less through 653 allows OS command execution via a newline character i ...

CVSS3: 8.6
0%
Низкий
около 1 года назад
ubuntu логотип
CVE-2022-48624

close_altfile in filename.c in less before 606 omits shell_quote calls for LESSCLOSE.

CVSS3: 7.8
0%
Низкий
больше 1 года назад
redhat логотип
CVE-2022-48624

close_altfile in filename.c in less before 606 omits shell_quote calls for LESSCLOSE.

CVSS3: 7
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2022-48624

close_altfile in filename.c in less before 606 omits shell_quote calls for LESSCLOSE.

CVSS3: 7.8
0%
Низкий
больше 1 года назад
msrc логотип
CVSS3: 7.8
0%
Низкий
4 месяца назад
debian логотип
CVE-2022-48624

close_altfile in filename.c in less before 606 omits shell_quote calls ...

CVSS3: 7.8
0%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2024:2060-1

Security update for less

0%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2024:1598-1

Security update for less

0%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2024:1550-1

Security update for less

0%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2024:1534-1

Security update for less

0%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2024:1192-1

Security update for less

0%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2024:1190-1

Security update for less

0%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2024:1189-1

Security update for less

0%
Низкий
около 1 года назад
redos логотип
ROS-20240607-02

Уязвимость less

CVSS2: 6.2
0%
Низкий
около 1 года назад

Уязвимостей на страницу