| |||||||||||||
| CVE ID: | CVE-2008-5705 |
| Description: | The cTrigger::DoIt function in src/ctrigger.cpp in the trigger mechanism in the daemon in Verlihub 0.9.8d-RC2 and earlier, when user triggers are enabled, allows remote attackers to execute arbitrary commands via shell metacharacters in an argument. |
| Test IDs: | 1.3.6.1.4.1.25623.1.0.63167 |
| Cross References: |
Common Vulnerability Exposure (CVE) ID: CVE-2008-5705 http://www.milw0rm.com/exploits/7183 http://openwall.com/lists/oss-security/2008/12/17/16 http://bugs.debian.org/506530 BugTraq ID: 32420 http://www.securityfocus.com/bid/32420 http://securityreason.com/securityalert/4800 XForce ISS Database: verlihub-trigger-command-execution(46801) http://xforce.iss.net/xforce/xfdb/46801 |
|