First published: Tue Dec 31 2019(Updated: )
The handle_request function in lib/HTTPServer.pm in Monitorix before 3.3.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the URI.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Fibranet Monitorix | <3.3.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-7070 has a high severity rating due to the potential for remote command execution.
To fix CVE-2013-7070, upgrade Monitorix to version 3.3.1 or later.
CVE-2013-7070 is a remote command execution vulnerability affecting Monitorix.
CVE-2013-7070 affects Monitorix versions prior to 3.3.1.
Yes, CVE-2013-7070 can be exploited by unauthenticated remote attackers.