CVE-2014-1216
22.04.2014, 13:06
FitNesse Wiki 20131110, 20140201, and earlier allows remote attackers to execute arbitrary commands by defining a COMMAND_PATTERN and TEST_RUNNER in the pageContent parameter when editing a page.Enginsight
Vendor | Product | Version |
---|---|---|
fitnesse | fitnesse_wiki | 𝑥 ≤ 20140201 |
𝑥
= Vulnerable software versions
References