7.5
CVSSv2

CVE-2004-0028

Published: 03/02/2004 Updated: 10/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

jitterbug 1.6.2 does not properly sanitize inputs, which allows remote authenticated users to execute arbitrary commands.

Vulnerable Product Search on Vulmon Subscribe to Product

samba jitterbug 1.6.2

Vendor Advisories

Steve Kemp discovered a security related problem in jitterbug, a simple CGI based bug tracking and reporting tool Unfortunately the program executions do not properly sanitize input, which allows an attacker to execute arbitrary commands on the server hosting the bug database As mitigating factors these attacks are only available to non-guest use ...