Horde Chora Viewer Remote Command...

- AV AC AU C I A
发布: 2004-06-13
修订: 2025-04-13

Horde Chora Viewer is reported to be prone to a remote command execution vulnerability. The vulnerability is reported to exist due to a lack of sanitization performed on values that may be user-supplied. Shell metacharacters that are included as a value for the affected URI parameter may result in attacker specified shell commands being executed in an exec() call. Command execution will occur in the context of the affected web server. Chora versions up to an including version 1.2.1 are reported to be affected by this vulnerability.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息