Debian Libphp-Snoopy vulnerabilities
3 known vulnerabilities affecting debian/libphp-snoopy.
Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2014-5008P2CRITICALCVSS 9.8fixed in libphp-snoopy 2.0.0-1 (bookworm)2014
CVE-2014-5008 [CRITICAL] CVE-2014-5008: libphp-snoopy - Snoopy allows remote attackers to execute arbitrary commands.
Snoopy allows remote attackers to execute arbitrary commands.
Scope: local
bookworm: resolved (fixed in 2.0.0-1)
bullseye: resolved (fixed in 2.0.0-1)
sid: resolved (fixed in 2.0.0-1)
debian
CVE-2008-7313P3CRITICALCVSS 10.0fixed in libphp-snoopy 2.0.0-1 (bookworm)2008
CVE-2008-7313 [CRITICAL] CVE-2008-7313: libphp-snoopy - The _httpsrequest function in Snoopy allows remote attackers to execute arbitrar...
The _httpsrequest function in Snoopy allows remote attackers to execute arbitrary commands. NOTE: this issue exists dues to an incomplete fix for CVE-2008-4796.
Scope: local
bookworm: resolved (fixed in 2.0.0-1)
bullseye: resolved (fixed in 2.0.0-1)
sid: resolved (fixed in 2.0.0-1)
debian
CVE-2008-4796P3MEDIUMCVSS 10.0fixed in libphp-snoopy 1.2.4-1 (bookworm)2008
CVE-2008-4796 [CRITICAL] CVE-2008-4796: libphp-snoopy - The _httpsrequest function (Snoopy/Snoopy.class.php) in Snoopy 1.2.3 and earlier...
The _httpsrequest function (Snoopy/Snoopy.class.php) in Snoopy 1.2.3 and earlier, as used in (1) ampache, (2) libphp-snoopy, (3) mahara, (4) mediamate, (5) opendb, (6) pixelpost, and possibly other products, allows remote attackers to execute arbitrary commands via shell metacharacters in https URLs.
Scope: local
bookworm: resolved (fixed in 1.2.4-1)
bullsey
debian