7.5

CVE-2012-5642

server/action.py in Fail2ban before 0.8.8 does not properly handle the content of the matches tag, which might allow remote attackers to trigger unsafe behavior in a custom action file via unspecified symbols in this content.
Data is provided by the National Vulnerability Database (NVD)
Fail2banFail2ban Version <= 0.8.7.1
Fail2banFail2ban Version0.1.0
Fail2banFail2ban Version0.1.1
Fail2banFail2ban Version0.1.2
Fail2banFail2ban Version0.3.0
Fail2banFail2ban Version0.3.1
Fail2banFail2ban Version0.4.0
Fail2banFail2ban Version0.4.1
Fail2banFail2ban Version0.5.0
Fail2banFail2ban Version0.5.1
Fail2banFail2ban Version0.5.2
Fail2banFail2ban Version0.5.3
Fail2banFail2ban Version0.5.4
Fail2banFail2ban Version0.5.5
Fail2banFail2ban Version0.6.0
Fail2banFail2ban Version0.6.1
Fail2banFail2ban Version0.7.0
Fail2banFail2ban Version0.7.1
Fail2banFail2ban Version0.7.2
Fail2banFail2ban Version0.7.3
Fail2banFail2ban Version0.7.4
Fail2banFail2ban Version0.7.5
Fail2banFail2ban Version0.7.6
Fail2banFail2ban Version0.7.7
Fail2banFail2ban Version0.7.8
Fail2banFail2ban Version0.7.9
Fail2banFail2ban Version0.8.0
Fail2banFail2ban Version0.8.1
Fail2banFail2ban Version0.8.2
Fail2banFail2ban Version0.8.3
Fail2banFail2ban Version0.8.4
Fail2banFail2ban Version0.8.5
Fail2banFail2ban Version0.8.6
Fail2banFail2ban Version0.8.7
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.64% 0.802
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P