CVE-2017-1000473

Severity CVSS v4.0:
Pending analysis
Type:
CWE-78 OS Command Injections
Publication date:
03/01/2018
Last modified:
19/01/2018

Description

Linux Dash up to version v2 is vulnerable to multiple command injection vulnerabilities in the way module names are parsed and then executed resulting in code execution on the server, potentially as root.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:linux-dash_project:linux-dash:*:*:*:*:*:*:*:* 2.0 (excluding)


References to Advisories, Solutions, and Tools