CVE-2009-4373
published 2009-12-21CVE-2009-4373: Unrestricted file upload vulnerability in repository/repository_attachment.php in AlienVault Open Source Security Information Management (OSSIM) 2.1.5, and…
PriorityP342high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
2.98%
85.6th percentile
Unrestricted file upload vulnerability in repository/repository_attachment.php in AlienVault Open Source Security Information Management (OSSIM) 2.1.5, and possibly other versions before 2.1.5-4, allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in ossiminstall/uploads/.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| alienvault | open_source_security_information_management | — | — |
| alienvault | open_source_security_information_management | — | — |
| alienvault | open_source_security_information_management | — | — |
| alienvault | open_source_security_information_management | — | — |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-f7qg-rpxj-p56c: Unrestricted file upload vulnerability in repository/repository_attachment
ghsa_unreviewed·2022-05-02
CVE-2009-4373 [HIGH] GHSA-f7qg-rpxj-p56c: Unrestricted file upload vulnerability in repository/repository_attachment
Unrestricted file upload vulnerability in repository/repository_attachment.php in AlienVault Open Source Security Information Management (OSSIM) 2.1.5, and possibly other versions before 2.1.5-4, allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in ossiminstall/uploads/.
Red Hat
kernel: Bluetooth: hci_conn: Fix crash on hci_create_cis_sync
vendor_redhat·2025-10-01·CVSS 5.5
CVE-2022-50447 [MEDIUM] CWE-476 kernel: Bluetooth: hci_conn: Fix crash on hci_create_cis_sync
kernel: Bluetooth: hci_conn: Fix crash on hci_create_cis_sync
In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: hci_conn: Fix crash on hci_create_cis_sync
When attempting to connect multiple ISO sockets without using
DEFER_SETUP may result in the following crash:
BUG: KASAN: null-ptr-deref in hci_create_cis_sync+0x18b/0x2b0
Read of size 2 at addr 0000000000000036 by task kworker/u3:1/50
CPU: 0 PID: 50 Comm: kworker/u3:1 Not tainted
6.0.0-rc7-02243-gb84a13ff4eda #4373
Hardware name: QEMU Standard PC (Q35 + ICH9, 2009),
BIOS 1.16.0-1.fc36 04/01/2014
Workqueue: hci0 hci_cmd_sync_work
Call Trace:
dump_stack_lvl+0x19/0x27
kasan_report+0xbc/0xf0
? hci_create_cis_sync+0x18b/0x2b0
hci_create_cis_sync+0x18b/0x2b0
? get_link_mode+0xd0/0xd0
? __ww_mutex_lock_slowpath+0x
No detection rules found.
No public exploits indexed.
http://secunia.com/advisories/37727http://www.alienvault.com/community.php?section=Newshttp://www.cybsec.com/vuln/OSSIM_2_1_5%20_Arbitrary_File_Upload.pdfhttp://secunia.com/advisories/37727http://www.alienvault.com/community.php?section=Newshttp://www.cybsec.com/vuln/OSSIM_2_1_5%20_Arbitrary_File_Upload.pdf
2009-12-21
Published