Lucene search

K
ubuntucveUbuntu.comUB:CVE-2010-2540
HistoryAug 02, 2010 - 12:00 a.m.

CVE-2010-2540

2010-08-0200:00:00
ubuntu.com
ubuntu.com
12

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.01

Percentile

83.4%

mapserv.c in mapserv in MapServer before 4.10.6 and 5.x before 5.6.4 does
not properly restrict the use of CGI command-line arguments that were
intended for debugging, which allows remote attackers to have an
unspecified impact via crafted arguments.

OSVersionArchitecturePackageVersionFilename
ubuntu9.04noarchmapserver< 5.0.3-3ubuntu0.2UNKNOWN
ubuntu10.04noarchmapserver< 5.6.1-1ubuntu1.1UNKNOWN

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.01

Percentile

83.4%