CVE-2009-4487
published 2010-01-13CVE-2009-4487: nginx 0.7.64 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly…
PriorityP344medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EXPLOIT
EPSS
27.01%
97.8th percentile
nginx 0.7.64 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | nginx | — | — |
| f5 | nginx | — | — |
| msrc | cbl_mariner_1.0_arm | — | — |
| msrc | cbl_mariner_1.0_x64 | — | — |
CVSS provenance
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv6.8MEDIUM
vendor_debian6.8LOW
vendor_msrc6.8MEDIUM
vendor_redhat6.8MEDIUM
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Microsoft
CVE-2009-4487: NIST NVD Details: https://nvd
vendor_msrc·2020-11-10·CVSS 6.8
CVE-2009-4487 [MEDIUM] CVE-2009-4487: NIST NVD Details: https://nvd
NIST NVD Details: https://nvd.nist.gov/vuln/detail/CVE-2009-4487
Mariner: Mariner
[email protected]: [email protected]
Customer Action Required: Yes
Exploit Status: DOS:N/A
Remediation: nginx
Red Hat
nginx: Absent sanitation of escape sequences in web server log
vendor_redhat·2010-01-10·CVSS 6.8
CVE-2009-4487 [MEDIUM] nginx: Absent sanitation of escape sequences in web server log
nginx: Absent sanitation of escape sequences in web server log
nginx 0.7.64 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator.
Debian
CVE-2009-4487: nginx - nginx 0.7.64 writes data to a log file without sanitizing non-printable characte...
vendor_debian·2009·CVSS 6.8
CVE-2009-4487 [MEDIUM] CVE-2009-4487: nginx - nginx 0.7.64 writes data to a log file without sanitizing non-printable characte...
nginx 0.7.64 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator.
Scope: local
bookworm: open
bullseye: open
forky: open
sid: open
trixie: open
GHSA
GHSA-94g9-mcw4-f749: nginx 0
ghsa_unreviewed·2022-05-02
CVE-2009-4487 [MEDIUM] GHSA-94g9-mcw4-f749: nginx 0
nginx 0.7.64 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator.
OSV
CVE-2009-4487: nginx 0
osv·2010-01-13·CVSS 6.8
CVE-2009-4487 [MEDIUM] CVE-2009-4487: nginx 0
nginx 0.7.64 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator.
No detection rules found.
Greynoiseio
Malicious Tag Roundup (October 2021)
blogs_greynoiseio·CVSS 10.0
[CRITICAL] Malicious Tag Roundup (October 2021)
CVE Disclosure Early Warning Get an early warning when traffic spikes indicate a high likelihood of new disclosures
Compromised Asset Detection Find out immediately if an asset communicates with a malicious IP address
Vulnerability Prioritization Get real-time insight into active exploitation trends to better understand risk and severity
SOC Efficiency Filter out noisy, low priority and false-positive alerts from mass internet scanners
Incident Investigation Add context to incidents to speed the determinations of scope and timelines
Threat Hunting Quickly identify anomalous behavior and enrich your threat hunting campaigns
Why GreyNoise
CVE Disclosure Early Warning Get an early warning when traffic spikes indicate a high likelihood of new disclosures
Compromised Asset Detection Fin
Bugzilla
CVE-2009-4487 nginx: Absent sanitation of escape sequences in web server log
bugzilla·2010-02-08·CVSS 5.0
CVE-2009-4487 [MEDIUM] CVE-2009-4487 nginx: Absent sanitation of escape sequences in web server log
CVE-2009-4487 nginx: Absent sanitation of escape sequences in web server log
Common Vulnerabilities and Exposures assigned an identifier CVE-2009-4487 to
the following vulnerability:
nginx 0.7.64 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator.
References:
[1] http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4487
[2] http://www.securityfocus.com/archive/1/archive/1/508830/100/0/threaded
[3] http://www.ush.it/team/ush/hack_httpd_escape/adv.txt
[4] http://www.securityfocus.com/bid/37711
Upstream status:
[5] http://nginx.org/en/security_advisories.html contains record
http://www.securityfocus.com/archive/1/508830/100/0/threadedhttp://www.securityfocus.com/bid/37711http://www.ush.it/team/ush/hack_httpd_escape/adv.txthttp://www.securityfocus.com/archive/1/508830/100/0/threadedhttp://www.securityfocus.com/bid/37711http://www.ush.it/team/ush/hack_httpd_escape/adv.txt
2010-01-13
Published