CVE-2008-1331

Scores

EPSS

0.585medium58.5%
0%20%40%60%80%100%

Percentile: 58.5%

CVSS

10.0critical2.0
0246810

CVSS Score: 10.0/10

All CVSS Scores

CVSS 2.0
10.0

Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Description

cgi-data/FastJSData.cgi in OmniPCX Office with Internet Access services OXO210 before 210091.001, OXO600 before 610014.001, and other versions, allows remote attackers to execute arbitrary commands and “obtain OXO resources” via shell metacharacters in the id2 parameter.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

nvd

CWEs

CWE-20

Exploits

Exploit ID: 5662

Source: exploitdb

URL: https://www.exploit-db.com/exploits/5662

Vulnerable Software (1)

Type: Configuration

Vendor: *

Product: omnipcx_office

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:alcatel-lucent:omnipcx_office:*:*:*:*:*:*:*:*",      "versionEndExcluding": "210\\/091.001",      "versionStartIncluding": "210",      "vulnera...

Source: nvd

End of list