Количество 7
Количество 7
GHSA-rx22-vq3w-89rg
spice-vdagent up to and including 0.17.0 does not properly escape save directory before passing to shell, allowing local attacker with access to the session the agent runs in to inject arbitrary commands to be executed.
CVE-2017-15108
spice-vdagent up to and including 0.17.0 does not properly escape save directory before passing to shell, allowing local attacker with access to the session the agent runs in to inject arbitrary commands to be executed.
CVE-2017-15108
spice-vdagent up to and including 0.17.0 does not properly escape save directory before passing to shell, allowing local attacker with access to the session the agent runs in to inject arbitrary commands to be executed.
CVE-2017-15108
spice-vdagent up to and including 0.17.0 does not properly escape save directory before passing to shell, allowing local attacker with access to the session the agent runs in to inject arbitrary commands to be executed.
CVE-2017-15108
spice-vdagent up to and including 0.17.0 does not properly escape save ...
openSUSE-SU-2018:0399-1
security update for spice-vdagent
SUSE-SU-2018:0372-1
security update for spice-vdagent
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-rx22-vq3w-89rg spice-vdagent up to and including 0.17.0 does not properly escape save directory before passing to shell, allowing local attacker with access to the session the agent runs in to inject arbitrary commands to be executed. | CVSS3: 7.8 | 0% Низкий | больше 4 лет назад | |
CVE-2017-15108 spice-vdagent up to and including 0.17.0 does not properly escape save directory before passing to shell, allowing local attacker with access to the session the agent runs in to inject arbitrary commands to be executed. | CVSS3: 7.8 | 0% Низкий | больше 8 лет назад | |
CVE-2017-15108 spice-vdagent up to and including 0.17.0 does not properly escape save directory before passing to shell, allowing local attacker with access to the session the agent runs in to inject arbitrary commands to be executed. | CVSS3: 6.5 | 0% Низкий | почти 9 лет назад | |
CVE-2017-15108 spice-vdagent up to and including 0.17.0 does not properly escape save directory before passing to shell, allowing local attacker with access to the session the agent runs in to inject arbitrary commands to be executed. | CVSS3: 7.8 | 0% Низкий | больше 8 лет назад | |
CVE-2017-15108 spice-vdagent up to and including 0.17.0 does not properly escape save ... | CVSS3: 7.8 | 0% Низкий | больше 8 лет назад | |
openSUSE-SU-2018:0399-1 security update for spice-vdagent | 0% Низкий | больше 8 лет назад | ||
SUSE-SU-2018:0372-1 security update for spice-vdagent | 0% Низкий | больше 8 лет назад |
Уязвимостей на страницу