CVE-2017-1000009

Akeneo PIM CE and EE <1.6.6, <1.5.15, <1.4.28 are vulnerable to shell injection in the mass edition, resulting in remote execution.
OS Command Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 93%
VendorProductVersion
akeneoproduct_information_management
1.4.0
akeneoproduct_information_management
1.4.0:beta1
akeneoproduct_information_management
1.4.0:beta2
akeneoproduct_information_management
1.4.0:beta3
akeneoproduct_information_management
1.4.0:rc1
akeneoproduct_information_management
1.4.1
akeneoproduct_information_management
1.4.2
akeneoproduct_information_management
1.4.3
akeneoproduct_information_management
1.4.4
akeneoproduct_information_management
1.4.5
akeneoproduct_information_management
1.4.6
akeneoproduct_information_management
1.4.7
akeneoproduct_information_management
1.4.8
akeneoproduct_information_management
1.4.9
akeneoproduct_information_management
1.4.10
akeneoproduct_information_management
1.4.11
akeneoproduct_information_management
1.4.12
akeneoproduct_information_management
1.4.13
akeneoproduct_information_management
1.4.14
akeneoproduct_information_management
1.4.15
akeneoproduct_information_management
1.4.16
akeneoproduct_information_management
1.4.17
akeneoproduct_information_management
1.4.18
akeneoproduct_information_management
1.4.19
akeneoproduct_information_management
1.4.20
akeneoproduct_information_management
1.4.21
akeneoproduct_information_management
1.4.22
akeneoproduct_information_management
1.4.23
akeneoproduct_information_management
1.4.24
akeneoproduct_information_management
1.4.25
akeneoproduct_information_management
1.4.26
akeneoproduct_information_management
1.4.27
akeneoproduct_information_management
1.5.0
akeneoproduct_information_management
1.5.0:alpha1
akeneoproduct_information_management
1.5.0:beta1
akeneoproduct_information_management
1.5.0:rc1
akeneoproduct_information_management
1.5.1
akeneoproduct_information_management
1.5.2
akeneoproduct_information_management
1.5.3
akeneoproduct_information_management
1.5.4
akeneoproduct_information_management
1.5.5
akeneoproduct_information_management
1.5.6
akeneoproduct_information_management
1.5.7
akeneoproduct_information_management
1.5.8
akeneoproduct_information_management
1.5.9
akeneoproduct_information_management
1.5.10
akeneoproduct_information_management
1.5.11
akeneoproduct_information_management
1.5.12
akeneoproduct_information_management
1.5.13
akeneoproduct_information_management
1.5.14
akeneoproduct_information_management
1.6.0
akeneoproduct_information_management
1.6.0:alpha1
akeneoproduct_information_management
1.6.0:alpha2
akeneoproduct_information_management
1.6.0:rc1
akeneoproduct_information_management
1.6.1
akeneoproduct_information_management
1.6.2
akeneoproduct_information_management
1.6.3
akeneoproduct_information_management
1.6.4
akeneoproduct_information_management
1.6.5
akeneoproduct_information_management
1.4.0
akeneoproduct_information_management
1.4.0:beta1
akeneoproduct_information_management
1.4.0:beta2
akeneoproduct_information_management
1.4.0:beta3
akeneoproduct_information_management
1.4.0:rc1
akeneoproduct_information_management
1.4.1
akeneoproduct_information_management
1.4.2
akeneoproduct_information_management
1.4.3
akeneoproduct_information_management
1.4.4
akeneoproduct_information_management
1.4.5
akeneoproduct_information_management
1.4.6
akeneoproduct_information_management
1.4.7
akeneoproduct_information_management
1.4.8
akeneoproduct_information_management
1.4.9
akeneoproduct_information_management
1.4.10
akeneoproduct_information_management
1.4.11
akeneoproduct_information_management
1.4.12
akeneoproduct_information_management
1.4.13
akeneoproduct_information_management
1.4.14
akeneoproduct_information_management
1.4.15
akeneoproduct_information_management
1.4.16
akeneoproduct_information_management
1.4.17
akeneoproduct_information_management
1.4.18
akeneoproduct_information_management
1.4.19
akeneoproduct_information_management
1.4.20
akeneoproduct_information_management
1.4.21
akeneoproduct_information_management
1.4.22
akeneoproduct_information_management
1.4.23
akeneoproduct_information_management
1.4.24
akeneoproduct_information_management
1.4.25
akeneoproduct_information_management
1.4.26
akeneoproduct_information_management
1.4.27
akeneoproduct_information_management
1.5.0
akeneoproduct_information_management
1.5.0:alpha1
akeneoproduct_information_management
1.5.0:beta1
akeneoproduct_information_management
1.5.0:rc1
akeneoproduct_information_management
1.5.1
akeneoproduct_information_management
1.5.2
akeneoproduct_information_management
1.5.3
akeneoproduct_information_management
1.5.4
akeneoproduct_information_management
1.5.5
akeneoproduct_information_management
1.5.6
akeneoproduct_information_management
1.5.7
akeneoproduct_information_management
1.5.8
akeneoproduct_information_management
1.5.9
akeneoproduct_information_management
1.5.10
akeneoproduct_information_management
1.5.11
akeneoproduct_information_management
1.5.12
akeneoproduct_information_management
1.5.13
akeneoproduct_information_management
1.5.14
akeneoproduct_information_management
1.6.0
akeneoproduct_information_management
1.6.0:alpha1
akeneoproduct_information_management
1.6.0:alpha2
akeneoproduct_information_management
1.6.0:rc1
akeneoproduct_information_management
1.6.1
akeneoproduct_information_management
1.6.2
akeneoproduct_information_management
1.6.3
akeneoproduct_information_management
1.6.4
akeneoproduct_information_management
1.6.5
𝑥
= Vulnerable software versions