Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2014-4511
Description:Gitlist before 0.5.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the file name in the URI of a request for a (1) blame, (2) file, or (3) stats page, as demonstrated by requests to blame/master/, master/, and stats/master/.
Test IDs: 1.3.6.1.4.1.25623.1.0.105052  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2014-4511
http://www.exploit-db.com/exploits/33929
http://www.exploit-db.com/exploits/33990
http://hatriot.github.io/blog/2014/06/29/gitlist-rce/
http://packetstormsecurity.com/files/127281/Gitlist-0.4.0-Remote-Code-Execution.html
http://packetstormsecurity.com/files/127364/Gitlist-Unauthenticated-Remote-Command-Execution.html




© 1998-2025 E-Soft Inc. All rights reserved.