PT-2004-2129 · Gnu · A2Ps
Rudolf Polzer
·
Publicado
2004-12-10
·
Atualizado
2018-10-19
·
CVE-2004-1170
CVSS v2.0
10
Alta
| Vetor | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
a2ps version 4.13
Description:
The issue allows remote attackers to execute arbitrary commands via shell metacharacters in the
filename. This can lead to unauthorized access and control of the system.Recommendations:
For version 4.13, consider updating to a newer version that addresses this issue, or as a temporary workaround, restrict the use of shell metacharacters in filenames to minimize the risk of exploitation.
Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
A2Ps