CVE-2012-0261
N/A
N/A
Summary
license.php in system-portal before 1.6.2 in op5 Monitor and op5 Appliance before 5.5.3 allows remote attackers to execute arbitrary commands via shell metacharacters in the timestamp parameter for an install action.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- https://bugs.op5.com/view.php?id=5094
- http://www.osvdb.org/78064
- http://secunia.com/advisories/47417
- http://www.op5.com/news/support-news/fixed-vulnerabilities-op5-monitor-op5-appliance/
- http://seclists.org/fulldisclosure/2012/Jan/62
- http://www.ekelow.se/file_uploads/Advisories/ekelow-aid-2012-01.pdf
References
- https://bugs.op5.com/view.php?id=5094
- http://www.osvdb.org/78064
- http://secunia.com/advisories/47417
- http://www.op5.com/news/support-news/fixed-vulnerabilities-op5-monitor-op5-appliance/
- http://seclists.org/fulldisclosure/2012/Jan/62
- http://www.ekelow.se/file_uploads/Advisories/ekelow-aid-2012-01.pdf
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.