CVE-2012-3001
high · 8.5Mutiny Standard before 4.5-1.12 allows remote attackers to execute arbitrary commands via the network-interface menu, related to a "command injection vulnerability."
8.5
CVSS
27.3%
EPSS (exploit prob.)
98th
EPSS percentile
2012-10-22
Published
AV:N/AC:M/Au:S/C:C/I:C/A:C
Weaknesses
CWE-78
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| mutiny | standard | <= 4.5-1.10 |
| mutiny | standard | 4.4-1.12 |
| mutiny | standard | 4.5-1.03 |
| mutiny | standard | 4.5-1.05 |
| mutiny | standard | 4.5-1.07 |
Check a specific version with /api/v1/cve/match.
References
- http://osvdb.org/86570
- http://secunia.com/advisories/51094
- http://www.kb.cert.org/vuls/id/841851
- http://www.mutiny.com/releasehistory.php
- http://www.securityfocus.com/bid/56165
- http://osvdb.org/86570
- http://secunia.com/advisories/51094
- http://www.kb.cert.org/vuls/id/841851
- http://www.mutiny.com/releasehistory.php
- http://www.securityfocus.com/bid/56165
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2012-3001