← All CVEs

CVE-2012-0261

high · 10

license.php in system-portal before 1.6.2 in op5 Monitor and op5 Appliance before 5.5.3 allows remote attackers to execute arbitrary commands via shell metacharacters in the timestamp parameter for an install action.

10
CVSS
73.9%
EPSS (exploit prob.)
99th
EPSS percentile
2013-12-31
Published

AV:N/AC:L/Au:N/C:C/I:C/A:C

Weaknesses

CWE-94

Affected products

VendorProductAffected versions
op5monitor<= 5.5.1
op5monitor5.3.5
op5monitor5.4.0
op5monitor5.4.2
op5monitor5.5.0
op5system-portal<= 1.6.1

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2012-0261