Lucene search

K
ubuntucveUbuntu.comUB:CVE-2011-3211
HistorySep 16, 2011 - 12:00 a.m.

CVE-2011-3211

2011-09-1600:00:00
ubuntu.com
ubuntu.com
17

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

EPSS

0.012

Percentile

85.5%

The server in Bcfg2 1.1.2 and earlier, and 1.2 prerelease, allows remote
attackers to execute arbitrary commands via shell metacharacters in data
received from a client.

Bugs

OSVersionArchitecturePackageVersionFilename
ubuntu8.04noarchbcfg2< 0.9.5.7-1ubuntu0.1UNKNOWN
ubuntu10.04noarchbcfg2< 0.9.6-0ubuntu2.1.10.04.1UNKNOWN
ubuntu10.10noarchbcfg2< 0.9.6-0ubuntu2.1.10.10.1UNKNOWN
ubuntu11.04noarchbcfg2< 1.1.1-2ubuntu1.2UNKNOWN

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

EPSS

0.012

Percentile

85.5%