CVE-2012-0262

Severity CVSS v4.0:
Pending analysis
Type:
CWE-94 Code Injection
Publication date:
31/12/2013
Last modified:
11/04/2025

Description

op5config/welcome in system-op5config before 2.0.3 in op5 Monitor and op5 Appliance before 5.5.3 allows remote attackers to execute arbitrary commands via shell metacharacters in the password parameter.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:op5:monitor:*:*:*:*:*:*:*:* 5.5.1 (including)
cpe:2.3:a:op5:monitor:5.3.5:*:*:*:*:*:*:*
cpe:2.3:a:op5:monitor:5.4.0:*:*:*:*:*:*:*
cpe:2.3:a:op5:monitor:5.4.2:*:*:*:*:*:*:*
cpe:2.3:a:op5:monitor:5.5.0:*:*:*:*:*:*:*
cpe:2.3:a:op5:system-op5config:*:*:*:*:*:*:*:* 2.0.2 (including)