Lucene search

K
ubuntucveUbuntu.comUB:CVE-2008-5705
HistoryDec 22, 2008 - 12:00 a.m.

CVE-2008-5705

2008-12-2200:00:00
ubuntu.com
ubuntu.com
8

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

EPSS

0.012

Percentile

85.6%

The cTrigger::DoIt function in src/ctrigger.cpp in the trigger mechanism in
the daemon in Verlihub 0.9.8d-RC2 and earlier, when user triggers are
enabled, allows remote attackers to execute arbitrary commands via shell
metacharacters in an argument.

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

EPSS

0.012

Percentile

85.6%