Cockpit是Cockpit开源的一个交互式服务器管理界面。 Cockpit存在操作系统命令注入漏洞,该漏洞源于系统日志用户界面中未清理用户控制的参数,允许远程攻击者通过特制链接注入shell元字符和命令替换,导致在受影响系统上执行任意shell命令,可能导致系统完全被破解。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 10 | 0:356.2-1.el10_2 ~ * |
cpe:/o:redhat:enterprise_linux:10.2
|
|
| Red Hat | Red Hat Enterprise Linux 10.0 Extended Update Support | 0:334.2-1.el10_0 ~ * |
cpe:/o:redhat:enterprise_linux_eus:10.0
|
|
| Red Hat | Red Hat Enterprise Linux 8 | 0:310.8-1.el8_10 ~ * |
cpe:/o:redhat:enterprise_linux:8::baseos
|
|
| Red Hat | Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support | 0:264.3-1.el8_6 ~ * |
cpe:/o:redhat:rhel_aus:8.6::baseos
|
|
| Red Hat | Red Hat Enterprise Linux 8.6 Telecommunications Update Service | 0:264.3-1.el8_6 ~ * |
cpe:/o:redhat:rhel_aus:8.6::baseos
|
|
| Red Hat | Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions | 0:264.3-1.el8_6 ~ * |
cpe:/o:redhat:rhel_aus:8.6::baseos
|
|
| Red Hat | Red Hat Enterprise Linux 8.8 Telecommunications Update Service | 0:286.2-1.el8_8 ~ * |
cpe:/o:redhat:rhel_e4s:8.8::baseos
|
|
| Red Hat | Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions | 0:286.2-1.el8_8 ~ * |
cpe:/o:redhat:rhel_e4s:8.8::baseos
|
|
| Red Hat | Red Hat Enterprise Linux 9 | 0:356.2-1.el9_8 ~ * |
cpe:/a:redhat:enterprise_linux:9::appstream
|
|
| Red Hat | Red Hat Enterprise Linux 9 | 0:356.2-1.el9_8 ~ * |
cpe:/a:redhat:enterprise_linux:9::appstream
|
|
| Red Hat | Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions | 0:264.3-1.el9_0 ~ * |
cpe:/a:redhat:rhel_e4s:9.0::appstream
|
|
| Red Hat | Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions | 0:286.3-1.el9_2 ~ * |
cpe:/a:redhat:rhel_e4s:9.2::appstream
|
|
| Red Hat | Red Hat Enterprise Linux 9.4 Extended Update Support | 0:311.3-1.el9_4 ~ * |
cpe:/a:redhat:rhel_eus:9.4::appstream
|
|
| Red Hat | Red Hat Enterprise Linux 9.6 Extended Update Support | 0:334.3-1.el9_6 ~ * |
cpe:/a:redhat:rhel_eus:9.6::appstream
|
|
| Red Hat | Red Hat Enterprise Linux 7 | - |
cpe:/o:redhat:enterprise_linux:7
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet