9
CVSSv2

CVE-2008-6954

Published: 12/08/2009 Updated: 17/08/2017
CVSS v2 Base Score: 9 | Impact Score: 10 | Exploitability Score: 8
VMScore: 801
Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

The web interface (CobblerWeb) in Cobbler prior to 1.2.9 allows remote authenticated users to execute arbitrary Python code in cobblerd by editing a Cheetah kickstart template to import arbitrary Python modules.

Vulnerable Product Search on Vulmon Subscribe to Product

michael dehaan cobbler 1.2.3

michael dehaan cobbler 1.2.2

michael dehaan cobbler 0.6.5

michael dehaan cobbler 0.6.4

michael dehaan cobbler 0.4.6

michael dehaan cobbler 0.4.5

michael dehaan cobbler 0.3.5

michael dehaan cobbler 0.3.4

michael dehaan cobbler 0.2.3

michael dehaan cobbler 0.2.2

michael dehaan cobbler 1.2.0

michael dehaan cobbler 1.0.3-1

michael dehaan cobbler 0.6.3

michael dehaan cobbler 0.6.1

michael dehaan cobbler 0.4.3

michael dehaan cobbler 0.4.2

michael dehaan cobbler 0.3.3

michael dehaan cobbler 0.3.1

michael dehaan cobbler 0.2.1

michael dehaan cobbler 0.1.1.7

michael dehaan cobbler 1.2.6

michael dehaan cobbler 1.2.5

michael dehaan cobbler 1.0.0

michael dehaan cobbler 0.8.3

michael dehaan cobbler 0.8.1

michael dehaan cobbler 0.4.8

michael dehaan cobbler 0.4.7

michael dehaan cobbler 0.3.7

michael dehaan cobbler 0.3.6

michael dehaan cobbler 0.2.7

michael dehaan cobbler 0.2.5

michael dehaan cobbler

michael dehaan cobbler 1.2.7

michael dehaan cobbler 1.0.2

michael dehaan cobbler 1.0.2-1

michael dehaan cobbler 0.6.0

michael dehaan cobbler 0.5.0

michael dehaan cobbler 0.4.0

michael dehaan cobbler 0.3.9

michael dehaan cobbler 0.3.0

michael dehaan cobbler 0.2.9

michael dehaan cobbler 0.2.8