10
CVSSv2

CVE-2009-0545

Published: 12/02/2009 Updated: 10/10/2018
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

cgi-bin/kerbynet in ZeroShell 1.0beta11 and previous versions allows remote malicious users to execute arbitrary commands via shell metacharacters in the type parameter in a NoAuthREQ x509List action.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

zeroshell zeroshell 1.0

Exploits

==================================================== ZeroShell <= 10beta11 Remote Code Execution Original Advisory: wwwikkisoftcom/stuff/LC-2009-01txt lucacarettoni[at]ikkisoft[dot]com ==================================================== ZeroShell (wwwzeroshellnet/eng/) is a small Linux distribution for servers and e ...