Vulnerability Name: | CVE-2008-5516 (CCN-48113) | ||||||||||||||||||||
Assigned: | 2008-12-12 | ||||||||||||||||||||
Published: | 2009-01-19 | ||||||||||||||||||||
Updated: | 2023-02-13 | ||||||||||||||||||||
Summary: | |||||||||||||||||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||||||||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P) 5.5 Medium (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
5.5 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
| ||||||||||||||||||||
Vulnerability Consequences: | Gain Access | ||||||||||||||||||||
References: | Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com Source: MITRE Type: CNA CVE-2008-5516 Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com Source: CCN Type: GIT GIT Repository gitweb: quote commands properly when calling the shell Source: CCN Type: SA33607 GIT "gitweb" Command Injection Vulnerabilities Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com Source: DEBIAN Type: DSA-1708 git-core -- shell command injection Source: CCN Type: GLSA-200903-15 git: Multiple vulnerabilties Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com Source: CCN Type: DSA-1708-1 git-core Source: CCN Type: oss-security Mailing List, Mon, 19 Jan 2009 21:57:03 +0100 Re: CVE request -- git Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com Source: CCN Type: OSVDB ID: 53539 GIT gitweb git_search Shell Metacharacter Arbitrary Command Execution Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com Source: CCN Type: BID-33355 Git Snapshot Generation and Pickaxe Search Arbitrary Command Injection Vulnerability Source: CCN Type: USN-723-1 Git vulnerabilities Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com Source: secalert@redhat.com Type: Vendor Advisory secalert@redhat.com Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com Source: XF Type: UNKNOWN git-snapshot-command-execution(48113) Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com | ||||||||||||||||||||
Vulnerable Configuration: | Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||||||||||
Oval Definitions | |||||||||||||||||||||
| |||||||||||||||||||||
BACK |