Lucene search

K
cveMitreCVE-2005-4601
HistoryJan 01, 2006 - 11:00 p.m.

CVE-2005-4601

2006-01-0123:00:00
mitre
web.nvd.nist.gov
47
cve-2005-4601
imagemagick
remote attackers
arbitrary commands
shell metacharacters
security vulnerability
nvd

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.2

Confidence

Low

EPSS

0.019

Percentile

88.7%

The delegate code in ImageMagick 6.2.4.5-0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in a filename that is processed by the display command.

Affected configurations

Nvd
Node
imagemagickimagemagickMatch6.2.4.5
VendorProductVersionCPE
imagemagickimagemagick6.2.4.5cpe:2.3:a:imagemagick:imagemagick:6.2.4.5:*:*:*:*:*:*:*

References

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.2

Confidence

Low

EPSS

0.019

Percentile

88.7%