7.2
CVSSv2

CVE-2015-5704

Published: 25/09/2017 Updated: 06/10/2017
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

scripts/licensecheck.pl in devscripts prior to 2.15.7 allows local users to execute arbitrary shell commands.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

devscripts devel team devscripts

fedoraproject fedora 21

fedoraproject fedora 22

Vendor Advisories

Debian Bug report logs - #794365 devscripts: licensecheck: CVE-2015-5705: argument injection vulnerability Package: devscripts; Maintainer for devscripts is Devscripts Maintainers <devscripts@packagesdebianorg>; Source for devscripts is src:devscripts (PTS, buildd, popcon) Reported by: Salvatore Bonaccorso <carnil@debia ...
Debian Bug report logs - #794260 devscripts: licensecheck: CVE-2015-5704: shell injection vulnerability Package: devscripts; Maintainer for devscripts is Devscripts Maintainers <devscripts@packagesdebianorg>; Source for devscripts is src:devscripts (PTS, buildd, popcon) Reported by: Jonas Smedegaard <dr@jonesdk> D ...