| Weakness Name | Source | |
|---|---|---|
| Improper Neutralization of Special Elements used in a Command ('Command Injection') The product constructs all or part of a command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended command when it is sent to a downstream component. |
| Metrics | Score | Severity | CVSS Vector | Source |
|---|---|---|---|---|
| V2 | 7.5 | AV:N/AC:L/Au:N/C:P/I:P/A:P | nvd@nist.gov |
Publication date : 2014-12-01 23h00 +00:00
Author : dash
EDB Verified : No
Publication date : 2017-11-02 23h00 +00:00
Author : Metasploit
EDB Verified : Yes
Apple>>Mac_os_x >> Version 10.8.5
Apple>>Mac_os_x >> Version 10.9.5
Apple>>Mac_os_x >> Version 10.10.0
Apple>>Mac_os_x >> Version 10.10.1
Netbsd>>Netbsd >> Version 5.1
Netbsd>>Netbsd >> Version 5.1.1
Netbsd>>Netbsd >> Version 5.1.2
Netbsd>>Netbsd >> Version 5.1.3
Netbsd>>Netbsd >> Version 5.1.4
Netbsd>>Netbsd >> Version 5.2
Netbsd>>Netbsd >> Version 5.2.1
Netbsd>>Netbsd >> Version 5.2.2
Netbsd>>Netbsd >> Version 6.0
Netbsd>>Netbsd >> Version 6.0.1
Netbsd>>Netbsd >> Version 6.0.2
Netbsd>>Netbsd >> Version 6.0.3
Netbsd>>Netbsd >> Version 6.0.4
Netbsd>>Netbsd >> Version 6.0.5
Netbsd>>Netbsd >> Version 6.0.6
Netbsd>>Netbsd >> Version 6.1
Netbsd>>Netbsd >> Version 6.1.1
Netbsd>>Netbsd >> Version 6.1.2
Netbsd>>Netbsd >> Version 6.1.3
Netbsd>>Netbsd >> Version 6.1.4
Netbsd>>Netbsd >> Version 6.1.5