PT-2013-3598 · Tpp · Tpp

Xtaran

·

Published

2013-10-28

·

Updated

2013-10-30

·

CVE-2013-2208

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions tpp version 1.3.1
Description The issue allows remote attackers to execute arbitrary commands via a --exec command in a TPP template file.
Recommendations For version 1.3.1, consider disabling the execution of commands from TPP template files until a patch is available. Restrict access to the template files to minimize the risk of exploitation.

Fix

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2013-2208

Affected Products

Tpp