CVE-2014-1216
22.04.2014, 13:06
FitNesse Wiki 20131110, 20140201, and earlier allows remote attackers to execute arbitrary commands by defining a COMMAND_PATTERN and TEST_RUNNER in the pageContent parameter when editing a page.Enginsight
| Vendor | Product | Version |
|---|---|---|
| fitnesse | fitnesse_wiki | 𝑥 ≤ 20140201 |
𝑥
= Vulnerable software versions
References