Vulnerability Details CVE-2011-4195
kiwi before 4.98.05, as used in SUSE Studio Onsite 1.2 before 1.2.1 and SUSE Studio Extension for System z 1.2 before 1.2.1, allows attackers to execute arbitrary commands via shell metacharacters in an image name.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.013
EPSS Ranking 78.8%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2011-4195
-
-
cpe:2.3:a:suse:kiwi:4.85.1
-
cpe:2.3:a:suse:kiwi:4.98.04
-
cpe:2.3:a:suse:studio_extension_for_system_z:1.2
-
cpe:2.3:a:suse:studio_onsite:1.2