« Volver al listado

CVE-2008-7196

Estado: ModificadaAlta (10)—

Unspecified vulnerability in metashell before 0.03 has unknown impact and attack vectors related to a "PATH execution security flaw," possibly an untrusted search path vulnerability.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2008-7196",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 10,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "authentication": "NONE",
          "integrityImpact": "COMPLETE",
          "accessComplexity": "LOW",
          "availabilityImpact": "COMPLETE",
          "confidentialityImpact": "COMPLETE"
        },
        "acInsufInfo": true,
        "impactScore": 10,
        "baseSeverity": "HIGH",
        "obtainAllPrivilege": true,
        "exploitabilityScore": 10,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "cve@mitre.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2009-09-10T10:30:01.627",
  "references": [
    {
      "url": "http://archives.neohapsis.com/archives/apps/freshmeat/2008-01/0032.html",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://osvdb.org/40573",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://archives.neohapsis.com/archives/apps/freshmeat/2008-01/0032.html",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://osvdb.org/40573",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-noinfo"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Unspecified vulnerability in metashell before 0.03 has unknown impact and attack vectors related to a \"PATH execution security flaw,\" possibly an untrusted search path vulnerability."
    },
    {
      "lang": "es",
      "value": "Vulnerabilidad inespecífica en metashell anteriores a 0.03 tiene un impacto desconocido y vectores de ataque relacionados con \"PATH execution security flaw,\" posiblemente una vulnerabilidad de ruta de busqueda sin confianza."
    }
  ],
  "lastModified": "2026-06-16T23:03:48.250",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:mark_reinsfelder:metashell:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "65E8E8C9-2CB9-437F-99ED-7EA5163E25D5",
              "versionEndIncluding": "0.02b"
            },
            {
              "criteria": "cpe:2.3:a:mark_reinsfelder:metashell:0.01b:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "66DAF258-2C0F-4F29-ACFF-58710AED7B8C"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "cve@mitre.org"
}