First published: Thu Nov 07 2019(Updated: )
TWiki before 5.1.4 allows remote attackers to execute arbitrary shell commands by sending a crafted '%MAKETEXT{}%' parameter value containing Perl backtick characters.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Twiki Twiki | <5.1.4 | |
debian/twiki |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-1751 is a vulnerability in TWiki versions before 5.1.4 that allows remote attackers to execute arbitrary shell commands.
An attacker can exploit CVE-2013-1751 by sending a crafted '%MAKETEXT{}%' parameter value containing Perl backtick characters.
CVE-2013-1751 has a severity rating of 9.8 (Critical).
TWiki versions before 5.1.4 are affected by CVE-2013-1751.
There are no known fixes available for CVE-2013-1751.