Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows attackers to execute arbitrary commands via shell metacharacters in an unspecified FileUtils function call.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Novell Kiwi任意命令执行漏洞
Vulnerability Description
Kiwi是美国Novell公司的一套用于创建Image、ISO和LiveCD的镜像系统。 在SUSE Studio 1.1.4之前的1.1版本中使用的Kiwi 3.74.2之前版本中存在任意命令执行漏洞。攻击者可以借助未明FileUtils函数调用中的shell元字符执行任意命令。
CVSS Information
N/A
Vulnerability Type
N/A