INFORMATION

Name : CVE-2009-4273 First Publication : 2010-01-26
Severity : Critical Last Modification : 2010-08-21

SCORING CVSS v2

Cvss Base Score : 10 Attack Range : Network
Cvss Impact Score : 10 Attack Complexity : Low
Cvss Expoit Score : 10 Authentification : None Required

Calculate full CVSS 2.0 Vectors scores

DETAIL

stap-server in SystemTap before 1.1 allows remote attackers to execute arbitrary commands via shell metacharacters in stap command-line arguments in a request.



CWE COMMON WEAKNESS ENUMERATION

OVALID

oval:org.mitre.oval:def:11417, stap-server in SystemTap before 1.1 allows remote attackers to execute arbitrary commands via shell metacharacters in stap command-line arguments in a request.

oval:org.mitre.oval:def:11414, The operating system installed on the system is Red Hat Enterprise Linux 5

CPE COMMON PLATFORM ENUMERATION

OPEN SOURCE VULNERABILTY DATABASE (OSVDB)

61806 : SystemTap stap-server Arbitrary Shell Command Execution.


SECONDARY(S) SOURCE(S)