This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor Adaptivecomputing First view 2013-10-11
Product Torque Resource Manager Last view 2013-11-20
Version 4.0.2 Type Application
Update *  
Edition *  
Language *  
Sofware Edition *  
Target Software *  
Target Hardware *  
Other *  
 
CPE Product cpe:2.3:a:adaptivecomputing:torque_resource_manager

Activity : Overall

Related : CVE

  Date Alert Description
10 2013-11-20 CVE-2013-4495

The send_the_mail function in server/svr_mail.c in Terascale Open-Source Resource and Queue Manager (aka TORQUE Resource Manager) before 4.2.6 allows remote attackers to execute arbitrary commands via shell metacharacters in the email (-M switch) to qsub.

9 2013-10-11 CVE-2013-4319

pbs_mom in Terascale Open-Source Resource and Queue Manager (aka TORQUE Resource Manager) 2.5.x, 4.x, and earlier does not properly restrict access by unprivileged ports, which allows remote authenticated users to execute arbitrary jobs by submitting a command.

CWE : Common Weakness Enumeration

%idName
50% (1) CWE-264 Permissions, Privileges, and Access Controls
50% (1) CWE-94 Failure to Control Generation of Code ('Code Injection')

Nessus® Vulnerability Scanner

id Description
2014-12-29 Name: The remote Gentoo host is missing one or more security-related patches.
File: gentoo_GLSA-201412-47.nasl - Type: ACT_GATHER_INFO
2014-10-20 Name: The remote Fedora host is missing a security update.
File: fedora_2014-11989.nasl - Type: ACT_GATHER_INFO
2014-10-20 Name: The remote Fedora host is missing a security update.
File: fedora_2014-12059.nasl - Type: ACT_GATHER_INFO
2014-09-23 Name: The remote Fedora host is missing a security update.
File: fedora_2014-10153.nasl - Type: ACT_GATHER_INFO
2013-11-21 Name: The remote Debian host is missing a security-related update.
File: debian_DSA-2796.nasl - Type: ACT_GATHER_INFO
2013-11-20 Name: The remote Mandriva Linux host is missing one or more security updates.
File: mandriva_MDVSA-2013-268.nasl - Type: ACT_GATHER_INFO
2013-10-20 Name: The remote Mandriva Linux host is missing one or more security updates.
File: mandriva_MDVSA-2013-252.nasl - Type: ACT_GATHER_INFO
2013-10-10 Name: The remote Debian host is missing a security-related update.
File: debian_DSA-2770.nasl - Type: ACT_GATHER_INFO