Argument injection vulnerability in syntax-highlighting.sh in cgit 9.0.3 and earlier allows remote authenticated users with permissions to add files to execute arbitrary commands via the --plug-in argument to the highlight command.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2012-11-11 05:00
Updated : 2017-08-28 18:32
NVD link : CVE-2012-4548
Mitre link : CVE-2012-4548
JSON object : View
CWE
Products Affected
lars_hjemli
- cgit