Vulnerability Details CVE-2011-3180
                kiwi before 4.98.08, as used in SUSE Studio Onsite 1.2 before 1.2.1 and SUSE Studio Extension for System z 1.2 before 1.2.1, allows attackers to execute arbitrary commands via shell metacharacters in the path of an overlay file, related to chown.
                
                    Exploit prediction scoring system (EPSS) score
                    
                        
                            EPSS Score 0.015
                        
                    
                    
                        
                            EPSS Ranking 80.5%
                        
                    
                 
                
                    CVSS Severity
                    
                    
                        
                            CVSS v2 Score 7.5
                        
                    
                 
                
                
                
                    
                
                
                    
                        Products affected by CVE-2011-3180
                        
                            
                                
                                - 
                                    
                                    
                                
 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:suse:kiwi:4.85.1
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:suse:kiwi:4.98.04
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:suse:kiwi:4.98.05
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:suse:kiwi:4.98.07
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:suse:studio_extension_for_system_z:1.2
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:suse:studio_onsite:1.2