Vulnerability Details CVE-2013-1362
Incomplete blacklist vulnerability in nrpc.c in Nagios Remote Plug-In Executor (NRPE) before 2.14 might allow remote attackers to execute arbitrary shell commands via "$()" shell metacharacters, which are processed by bash.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.764
EPSS Ranking 98.9%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2013-1362
-
cpe:2.3:a:nagios:remote_plug_in_executor:1.3
-
cpe:2.3:a:nagios:remote_plug_in_executor:1.4
-
cpe:2.3:a:nagios:remote_plug_in_executor:1.5
-
cpe:2.3:a:nagios:remote_plug_in_executor:1.6
-
cpe:2.3:a:nagios:remote_plug_in_executor:1.7
-
cpe:2.3:a:nagios:remote_plug_in_executor:1.8
-
cpe:2.3:a:nagios:remote_plug_in_executor:1.9
-
cpe:2.3:a:nagios:remote_plug_in_executor:2.0
-
cpe:2.3:a:nagios:remote_plug_in_executor:2.0b1
-
cpe:2.3:a:nagios:remote_plug_in_executor:2.0b2
-
cpe:2.3:a:nagios:remote_plug_in_executor:2.0b3
-
cpe:2.3:a:nagios:remote_plug_in_executor:2.0b4
-
cpe:2.3:a:nagios:remote_plug_in_executor:2.0b5
-
cpe:2.3:a:nagios:remote_plug_in_executor:2.10
-
cpe:2.3:a:nagios:remote_plug_in_executor:2.11
-
cpe:2.3:a:nagios:remote_plug_in_executor:2.12
-
cpe:2.3:a:nagios:remote_plug_in_executor:2.13
-
cpe:2.3:a:nagios:remote_plug_in_executor:2.3
-
cpe:2.3:a:nagios:remote_plug_in_executor:2.4
-
cpe:2.3:a:nagios:remote_plug_in_executor:2.5
-
cpe:2.3:a:nagios:remote_plug_in_executor:2.5.1
-
cpe:2.3:a:nagios:remote_plug_in_executor:2.5.2
-
cpe:2.3:a:nagios:remote_plug_in_executor:2.6
-
cpe:2.3:a:nagios:remote_plug_in_executor:2.7
-
cpe:2.3:a:nagios:remote_plug_in_executor:2.7.1
-
cpe:2.3:a:nagios:remote_plug_in_executor:2.8
-
cpe:2.3:a:nagios:remote_plug_in_executor:2.8.1
-
cpe:2.3:a:nagios:remote_plug_in_executor:2.8b1
-
cpe:2.3:a:nagios:remote_plug_in_executor:2.9
-
cpe:2.3:o:opensuse:opensuse:11.4
-
cpe:2.3:o:opensuse:opensuse:12.1
-
cpe:2.3:o:opensuse:opensuse:12.2