CVE-2013-7377

The codem-transcode module before 0.5.0 for Node.js, when ffprobe is enabled, allows remote attackers to execute arbitrary commands via a POST request to /probe.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:codem-transcode_project:codem-transcode:0.5.0:beta1:*:*:*:*:*:*
cpe:2.3:a:codem-transcode_project:codem-transcode:0.5.0:beta2:*:*:*:*:*:*
cpe:2.3:a:codem-transcode_project:codem-transcode:0.5.0:beta3:*:*:*:*:*:*
cpe:2.3:a:codem-transcode_project:codem-transcode:0.5.0:beta4:*:*:*:*:*:*
cpe:2.3:a:codem-transcode_project:codem-transcode:0.4.3:*:*:*:*:*:*:*
cpe:2.3:a:codem-transcode_project:codem-transcode:0.4.1:*:*:*:*:*:*:*
cpe:2.3:a:codem-transcode_project:codem-transcode:0.4.4:*:*:*:*:*:*:*
cpe:2.3:a:codem-transcode_project:codem-transcode:0.4.2:*:*:*:*:*:*:*

Information

Published : 2017-10-23 11:29

Updated : 2017-11-21 10:21


NVD link : CVE-2013-7377

Mitre link : CVE-2013-7377


JSON object : View

CWE
CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')

Advertisement

dedicated server usa

Products Affected

codem-transcode_project

  • codem-transcode