Vulnerabilities
Vulnerable Software
Gnu:  >> Cvs  >> 1.12.3  Security Vulnerabilities
CVS 1.12.x, when configured to use SSH for remote repositories, might allow remote attackers to execute arbitrary code via a repository URL with a crafted hostname, as demonstrated by "-oProxyCommand=id;localhost:/bar."
CVSS Score
7.5
EPSS Score
0.044
Published
2017-08-24
CVS 1.11.x before 1.11.17, and 1.12.x before 1.12.9, allows remote attackers to determine the existence of arbitrary files and directories via the -X command for an alternate history file, which causes different error messages to be returned.
CVSS Score
5.0
EPSS Score
0.047
Published
2004-10-20


Contact Us

Shodan ® - All rights reserved