Incomplete blacklist vulnerability in nrpc.c in Nagios Remote Plug-In Executor (NRPE) prior to 2.14 might allow remote malicious users to execute arbitrary shell commands via "$()" shell metacharacters, which are processed by bash.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
opensuse opensuse 12.1 |
||
opensuse opensuse 12.2 |
||
opensuse opensuse 11.4 |
||
nagios remote plug in executor 2.8.1 |
||
nagios remote plug in executor 2.8 |
||
nagios remote plug in executor 2.5 |
||
nagios remote plug in executor 2.4 |
||
nagios remote plug in executor 2.0b1 |
||
nagios remote plug in executor 1.8 |
||
nagios remote plug in executor 2.10 |
||
nagios remote plug in executor 2.9 |
||
nagios remote plug in executor 2.5.2 |
||
nagios remote plug in executor 2.5.1 |
||
nagios remote plug in executor 2.0b3 |
||
nagios remote plug in executor 2.0b2 |
||
nagios remote plug in executor 1.3 |
||
nagios remote plug in executor |
||
nagios remote plug in executor 2.8b1 |
||
nagios remote plug in executor 2.7.1 |
||
nagios remote plug in executor 2.3 |
||
nagios remote plug in executor 2.0 |
||
nagios remote plug in executor 1.7 |
||
nagios remote plug in executor 1.6 |
||
nagios remote plug in executor 2.12 |
||
nagios remote plug in executor 2.11 |
||
nagios remote plug in executor 2.7 |
||
nagios remote plug in executor 2.6 |
||
nagios remote plug in executor 2.0b5 |
||
nagios remote plug in executor 1.9 |
||
nagios remote plug in executor 2.0b4 |
||
nagios remote plug in executor 1.5 |
||
nagios remote plug in executor 1.4 |