CVE-2008-6954

EPSS 1.6%

Cobbler Web Interface Kickstart Template Remote Privilege Escalation Vulnerability

發布日:2022/5/17修改日:2024/12/6

描述

The web interface (CobblerWeb) in Cobbler before 1.2.9 allows remote authenticated users to execute arbitrary Python code with the root privileges in cobblerd by editing a Cheetah kickstart template to import arbitrary Python modules.

受影響套件(1)

參考連結(9)