PoC Index

CVE-2012-2104

MEDIUM 6.8EPSS 5.1%

cgi-bin/munin-cgi-graph in Munin 2.x writes data to a log file without sanitizing non-printable characters, which might allow user-assisted remote attackers to inject terminal emulator escape sequences and execute arbitrary commands or delete arbitrary files via a crafted HTTP request.

CVSS v2.0
6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
EPSS
5.08% chance of exploitation in the next 30 days, 92th percentile
Published
2012-08-26
Updated
2024-08-06

ExploitDB entries (1)

References

Related