7.5
CVSSv2

CVE-2007-3011

Published: 05/07/2007 Updated: 16/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The DBAsciiAccess CGI Script in the web interface in Fujitsu-Siemens Computers ServerView prior to 4.50.09 allows remote malicious users to execute arbitrary commands via shell metacharacters in the Servername subparameter of the ParameterList parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

fujitsu serverview 4.10l11

fujitsu serverview 4.11l11b

fujitsu serverview 4.30.3

fujitsu serverview 4.30.4

fujitsu serverview 4.40.2

fujitsu serverview 4.40.3

fujitsu serverview 4.50.4

fujitsu serverview 4.50.5

fujitsu serverview 3.60l98

fujitsu serverview 3.60l99

fujitsu serverview 4.30.13

fujitsu serverview 4.30.2

fujitsu serverview 4.30.9

fujitsu serverview 4.40.1

fujitsu serverview 4.50.2

fujitsu serverview 4.50.3

fujitsu serverview 4.11l81

fujitsu serverview 4.30.1

fujitsu serverview 4.30.5

fujitsu serverview 4.30.6

fujitsu serverview 4.40.4

fujitsu serverview 4.40.5

fujitsu serverview 4.50.6

fujitsu serverview 4.50.7

fujitsu serverview 4.50.8

fujitsu serverview 2.50

fujitsu serverview 4.30.10

fujitsu serverview 4.30.11

fujitsu serverview 4.30.12

fujitsu serverview 4.30.7

fujitsu serverview 4.30.8

fujitsu serverview 4.40.6

fujitsu serverview 4.50.1

Exploits

source: wwwsecurityfocuscom/bid/24762/info Fujitsu ServerView is prone to a remote command-execution vulnerability because it fails to adequately sanitize user-supplied data Attackers can exploit this issue to execute arbitrary commands with the privileges of the affected application Successful attacks will compromise the application a ...
Fujitsu-Siemens ServerView suffers from a remote command execution vulnerability Full details provided Versions below 45009 are affected ...