Lucene search

K
debiancveDebian Security Bug TrackerDEBIANCVE:CVE-2002-2047
HistoryJul 14, 2005 - 4:00 a.m.

CVE-2002-2047

2005-07-1404:00:00
Debian Security Bug Tracker
security-tracker.debian.org
7
cve-2002-2047
remote attackers
arbitrary commands
shell metacharacters
filename
encapsulated postscript
eps file
unix

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.013

Percentile

86.0%

The file preview functionality in Sketch 0.6.12 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the filename of an encapsulated Postscript (EPS) file.

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.013

Percentile

86.0%

Related for DEBIANCVE:CVE-2002-2047