CVE-2007-5837
published 2007-11-05CVE-2007-5837: GUI.pm in yarssr 0.2.2, when Gnome default URL handling is disabled, allows remote attackers to execute arbitrary commands via shell metacharacters in a link…
PriorityP348medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EXPLOIT
EPSS
6.21%
92.6th percentile
GUI.pm in yarssr 0.2.2, when Gnome default URL handling is disabled, allows remote attackers to execute arbitrary commands via shell metacharacters in a link element in a feed.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| yarssr | yarssr | — | — |
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No writeups or analysis indexed.
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=448721http://secunia.com/advisories/27454http://secunia.com/advisories/28671http://www.debian.org/security/2008/dsa-1477http://www.securityfocus.com/bid/26273http://www.vupen.com/english/advisories/2007/3679https://exchange.xforce.ibmcloud.com/vulnerabilities/38191http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=448721http://secunia.com/advisories/27454http://secunia.com/advisories/28671http://www.debian.org/security/2008/dsa-1477http://www.securityfocus.com/bid/26273http://www.vupen.com/english/advisories/2007/3679https://exchange.xforce.ibmcloud.com/vulnerabilities/38191
2007-11-05
Published