CVE-2013-7070: Critical severity fibranet monitorix vulnerability
Published Dec 31, 2019
·Updated
The handlerequest function in lib/HTTPServer.pm in Monitorix before 3.3.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the URI.
Affected Software
1 affected component
Fibranet Monitorix<3.3.1
Remediation
Event History
Dec 31, 2019
CVE Published
via MITRE·07:57 PM
Data Sourced
via MITRE·07:57 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-7070?
CVE-2013-7070 has a high severity rating due to the potential for remote command execution.
2
How do I fix CVE-2013-7070?
To fix CVE-2013-7070, upgrade Monitorix to version 3.3.1 or later.
3
What type of vulnerability is CVE-2013-7070?
CVE-2013-7070 is a remote command execution vulnerability affecting Monitorix.
4
Which software versions are affected by CVE-2013-7070?
CVE-2013-7070 affects Monitorix versions prior to 3.3.1.
5
Can CVE-2013-7070 be exploited by unauthenticated users?
Yes, CVE-2013-7070 can be exploited by unauthenticated remote attackers.