7.5

CVE-2010-2060

The put command functionality in beanstalkd 1.4.5 and earlier allows remote attackers to execute arbitrary Beanstalk commands via the body in a job that is too big, which is not properly handled by the dispatch_cmd function in prot.c.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
WildbitBeanstalkd Version <= 1.4.5
WildbitBeanstalkd Version0.5 Update-
WildbitBeanstalkd Version0.6
WildbitBeanstalkd Version0.7
WildbitBeanstalkd Version0.8
WildbitBeanstalkd Version0.9
WildbitBeanstalkd Version0.10
WildbitBeanstalkd Version1.0
WildbitBeanstalkd Version1.1
WildbitBeanstalkd Version1.2
WildbitBeanstalkd Version1.3
WildbitBeanstalkd Version1.4
WildbitBeanstalkd Version1.4.1
WildbitBeanstalkd Version1.4.2
WildbitBeanstalkd Version1.4.3
WildbitBeanstalkd Version1.4.4
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2.52% 0.828
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://github.com/kr/beanstalkd/commit/2e8e8c6387ecdf5923dfc4d7718d18eba1b0873d
http://kr.github.com/beanstalkd/2010/05/23/1.4.6-release-notes.html
http://osvdb.org/65113
http://secunia.com/advisories/40032
Vendor Advisory
http://www.securityfocus.com/bid/40516
https://exchange.xforce.ibmcloud.com/vulnerabilities/59107