10
CVSSv2

CVE-2017-1000469

Published: 03/01/2018 Updated: 17/01/2018
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Cobbler version up to 2.8.2 is vulnerable to a command injection vulnerability in the "add repo" component resulting in arbitrary code execution as root user.

Vulnerable Product Search on Vulmon Subscribe to Product

cobbler project cobbler

Vendor Advisories

Cobbler version up to 282 is vulnerable to a command injection vulnerability in the "add repo" component resulting in arbitrary code execution as root user ...