7.5
CVSSv3

CVE-2018-7032

Published: 14/02/2018 Updated: 24/08/2020
CVSS v2 Base Score: 5.1 | Impact Score: 6.4 | Exploitability Score: 4.9
CVSS v3 Base Score: 7.5 | Impact Score: 5.9 | Exploitability Score: 1.6
VMScore: 454
Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P

Vulnerability Summary

webcheckout in myrepos up to and including 1.20171231 does not sanitize URLs that are passed to git clone, allowing a malicious website operator or a MitM malicious user to take advantage of it for arbitrary code execution, as demonstrated by an "ext::sh -c" attack or an option injection attack.

Vulnerable Product Search on Vulmon Subscribe to Product

myrepos project myrepos

Vendor Advisories

Debian Bug report logs - #840014 webcheckout: CVE-2018-7032: missing URL sanitization Package: myrepos; Maintainer for myrepos is Richard Hartmann <richih@debianorg>; Source for myrepos is src:myrepos (PTS, buildd, popcon) Reported by: Jakub Wilk <jwilk@debianorg> Date: Fri, 7 Oct 2016 16:36:04 UTC Severity: norm ...