|
|
Log in / Subscribe / Register

otrs: arbitrary command execution

Package(s):otrs CVE #(s):CVE-2011-0456
Created:April 1, 2011 Updated:April 6, 2011
Description: From the openSUSE advisory:

Insufficient quoting of shell meta characters in otrs' webscript.pl could allow remote attackers to execute arbitrary commands.

Alerts:
SUSE SUSE-SR:2011:006 apache2-mod_php5/php5, cobbler, evince, gdm, kdelibs4, otrs, quagga 2011-04-05
openSUSE openSUSE-SU-2011:0278-1 otrs 2011-04-01

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds