Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2012-0212


debdiff.pl in devscripts 2.10.x before 2.10.69 and 2.11.x before 2.11.4 allows remote attackers to execute arbitrary code via shell metacharacters in the file name argument.


Published

2012-06-16T00:55:05.967

Last Modified

2025-04-11T00:51:21.963

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 9.3 (HIGH)

CVSSv2 Vector

AV:N/AC:M/Au:N/C:C/I:C/A:C

  • Access Vector: NETWORK
  • Access Complexity: MEDIUM
  • Authentication: NONE
  • Confidentiality Impact: COMPLETE
  • Integrity Impact: COMPLETE
  • Availability Impact: COMPLETE
Exploitability Score

8.6

Impact Score

10.0

Weaknesses
  • Type: Primary
    CWE-20

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application devscripts_devel_team devscripts 2.10.0 Yes
Application devscripts_devel_team devscripts 2.10.1 Yes
Application devscripts_devel_team devscripts 2.10.3 Yes
Application devscripts_devel_team devscripts 2.10.6 Yes
Application devscripts_devel_team devscripts 2.10.7 Yes
Application devscripts_devel_team devscripts 2.10.8 Yes
Application devscripts_devel_team devscripts 2.10.9 Yes
Application devscripts_devel_team devscripts 2.10.10 Yes
Application devscripts_devel_team devscripts 2.10.11 Yes
Application devscripts_devel_team devscripts 2.10.12 Yes
Application devscripts_devel_team devscripts 2.10.13 Yes
Application devscripts_devel_team devscripts 2.10.14 Yes
Application devscripts_devel_team devscripts 2.10.15 Yes
Application devscripts_devel_team devscripts 2.10.16 Yes
Application devscripts_devel_team devscripts 2.10.17 Yes
Application devscripts_devel_team devscripts 2.10.18 Yes
Application devscripts_devel_team devscripts 2.10.18.1 Yes
Application devscripts_devel_team devscripts 2.10.19 Yes
Application devscripts_devel_team devscripts 2.10.20 Yes
Application devscripts_devel_team devscripts 2.10.21 Yes
Application devscripts_devel_team devscripts 2.10.22 Yes
Application devscripts_devel_team devscripts 2.10.23 Yes
Application devscripts_devel_team devscripts 2.10.24 Yes
Application devscripts_devel_team devscripts 2.10.25 Yes
Application devscripts_devel_team devscripts 2.10.26 Yes
Application devscripts_devel_team devscripts 2.10.27 Yes
Application devscripts_devel_team devscripts 2.10.28 Yes
Application devscripts_devel_team devscripts 2.10.29 Yes
Application devscripts_devel_team devscripts 2.10.30 Yes
Application devscripts_devel_team devscripts 2.10.31 Yes
Application devscripts_devel_team devscripts 2.10.32 Yes
Application devscripts_devel_team devscripts 2.10.33 Yes
Application devscripts_devel_team devscripts 2.10.34 Yes
Application devscripts_devel_team devscripts 2.10.35 Yes
Application devscripts_devel_team devscripts 2.10.36 Yes
Application devscripts_devel_team devscripts 2.10.38 Yes
Application devscripts_devel_team devscripts 2.10.39 Yes
Application devscripts_devel_team devscripts 2.10.40 Yes
Application devscripts_devel_team devscripts 2.10.41 Yes
Application devscripts_devel_team devscripts 2.10.42 Yes
Application devscripts_devel_team devscripts 2.10.43 Yes
Application devscripts_devel_team devscripts 2.10.44 Yes
Application devscripts_devel_team devscripts 2.10.45 Yes
Application devscripts_devel_team devscripts 2.10.46 Yes
Application devscripts_devel_team devscripts 2.10.47 Yes
Application devscripts_devel_team devscripts 2.10.48 Yes
Application devscripts_devel_team devscripts 2.10.49 Yes
Application devscripts_devel_team devscripts 2.10.50 Yes
Application devscripts_devel_team devscripts 2.10.51 Yes
Application devscripts_devel_team devscripts 2.10.52 Yes
Application devscripts_devel_team devscripts 2.10.53 Yes
Application devscripts_devel_team devscripts 2.10.54 Yes
Application devscripts_devel_team devscripts 2.10.55 Yes
Application devscripts_devel_team devscripts 2.10.56 Yes
Application devscripts_devel_team devscripts 2.10.57 Yes
Application devscripts_devel_team devscripts 2.10.58 Yes
Application devscripts_devel_team devscripts 2.10.59 Yes
Application devscripts_devel_team devscripts 2.10.60 Yes
Application devscripts_devel_team devscripts 2.10.61 Yes
Application devscripts_devel_team devscripts 2.10.62 Yes
Application devscripts_devel_team devscripts 2.10.63 Yes
Application devscripts_devel_team devscripts 2.10.64 Yes
Application devscripts_devel_team devscripts 2.10.65.1 Yes
Application devscripts_devel_team devscripts 2.10.66 Yes
Application devscripts_devel_team devscripts 2.10.67 Yes
Application devscripts_devel_team devscripts 2.10.68 Yes
Application devscripts_devel_team devscripts 2.11.0 Yes
Application devscripts_devel_team devscripts 2.11.1 Yes
Application devscripts_devel_team devscripts 2.11.2 Yes
Application devscripts_devel_team devscripts 2.11.3 Yes

References