7.5

CVE-2007-3011

Exploit

The DBAsciiAccess CGI Script in the web interface in Fujitsu-Siemens Computers ServerView before 4.50.09 allows remote attackers to execute arbitrary commands via shell metacharacters in the Servername subparameter of the ParameterList parameter.

Data is provided by the National Vulnerability Database (NVD)
FujitsuServerview Version2.50
FujitsuServerview Version3.60l98
FujitsuServerview Version3.60l99
FujitsuServerview Version4.10l11
FujitsuServerview Version4.11l11b
FujitsuServerview Version4.11l81
FujitsuServerview Version4.30.1
FujitsuServerview Version4.30.2
FujitsuServerview Version4.30.3
FujitsuServerview Version4.30.4
FujitsuServerview Version4.30.5
FujitsuServerview Version4.30.6
FujitsuServerview Version4.30.7
FujitsuServerview Version4.30.8
FujitsuServerview Version4.30.9
FujitsuServerview Version4.30.10
FujitsuServerview Version4.30.11
FujitsuServerview Version4.30.12
FujitsuServerview Version4.30.13
FujitsuServerview Version4.40.1
FujitsuServerview Version4.40.2
FujitsuServerview Version4.40.3
FujitsuServerview Version4.40.4
FujitsuServerview Version4.40.5
FujitsuServerview Version4.40.6
FujitsuServerview Version4.50.1
FujitsuServerview Version4.50.2
FujitsuServerview Version4.50.3
FujitsuServerview Version4.50.4
FujitsuServerview Version4.50.5
FujitsuServerview Version4.50.6
FujitsuServerview Version4.50.7
FujitsuServerview Version4.50.8
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 17.06% 0.948
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P