CVE-2008-0892Improper Input Validation in Redhat Directory Server

Severity
9.0CRITICALNVD
EPSS
3.0%
top 13.39%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 16
Latest updateMay 1

Description

The replication monitor CGI script (repl-monitor-cgi.pl) in Red Hat Administration Server, as used by Red Hat Directory Server 8.0 EL4 and EL5, allows remote attackers to execute arbitrary commands.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 8.0 | Impact: 10.0

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-cg2c-3gw3-2vcg: The replication monitor CGI script (repl-monitor-cgi2022-05-01
CVEList
CVE-2008-0892: The replication monitor CGI script (repl-monitor-cgi2008-04-16

📋Vendor Advisories

1
Red Hat
Server: shell command injection in CGI replication monitor2008-04-15

💬Community

1
Bugzilla
CVE-2008-0892 Director Server: shell command injection in CGI replication monitor2008-03-13
CVE-2008-0892 — Improper Input Validation in Redhat | cvebase