PoC Index

CVE-2013-4983

HIGH 10.0EPSS 90.1%

The get_referers function in /opt/ws/bin/sblistpack in Sophos Web Appliance before 3.7.9.1 and 3.8 before 3.8.1.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the domain parameter to end-user/index.php.

CVSS v2.0
10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS
90.13% chance of exploitation in the next 30 days, 100th percentile
Published
2013-09-10
Updated
2024-09-17

Metasploit modules (1)

ExploitDB entries (2)

References

Related