Lucene search

K
cvelistRedhatCVELIST:CVE-2012-2395
HistoryJun 16, 2012 - 12:00 a.m.

CVE-2012-2395

2012-06-1600:00:00
redhat
www.cve.org
1

9.9 High

AI Score

Confidence

High

0.017 Low

EPSS

Percentile

88.0%

Incomplete blacklist vulnerability in action_power.py in Cobbler 2.2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) username or (2) password fields to the power_system method in the xmlrpc API.

9.9 High

AI Score

Confidence

High

0.017 Low

EPSS

Percentile

88.0%