CVE-2008-6935: Code Injection
Published Aug 11, 2009
·Updated
Argument injection vulnerability in Exodus 0.10 allows remote attackers to inject arbitrary command line arguments, overwrite arbitrary files, and cause a denial of service via encoded spaces in an im:// URI.
Affected Software
1 affected component
Joe Fuhrman Exodus=0.10
Event History
Aug 11, 2009
CVE Published
via MITRE·08:25 PM
Data Sourced
via MITRE·08:25 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-6935?
CVE-2008-6935 is considered a moderate severity vulnerability that can lead to arbitrary command execution and denial of service.
2
How do I fix CVE-2008-6935?
To fix CVE-2008-6935, upgrade to a version of Exodus that is not vulnerable, or apply any available patches.
3
What type of vulnerability is CVE-2008-6935?
CVE-2008-6935 is an argument injection vulnerability that allows remote attackers to exploit the application.
4
What can attackers achieve through CVE-2008-6935?
Attackers can inject arbitrary command line arguments, which could overwrite files and result in a denial of service.
5
Which version of Exodus is affected by CVE-2008-6935?
CVE-2008-6935 specifically affects Exodus version 0.10.