CVE Vulnerabilities

CVE-2005-2877

Published: Sep 16, 2005 | Modified: Oct 18, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The history (revision control) function in TWiki 02-Sep-2004 and earlier allows remote attackers to execute arbitrary code via shell metacharacters, as demonstrated via the rev parameter to TWikiUsers.

Affected Software

Name Vendor Start Version End Version
Twiki Twiki 2000-12-01 (including) 2000-12-01 (including)
Twiki Twiki 2001-12-01 (including) 2001-12-01 (including)
Twiki Twiki 2003-02-01 (including) 2003-02-01 (including)
Twiki Twiki 2004-09-01 (including) 2004-09-01 (including)
Twiki Twiki 2004-09-02 (including) 2004-09-02 (including)

References