CVE-2018-16232
17.10.2018, 14:29
An authenticated command injection vulnerability exists in IPFire Firewall before 2.21 Core Update 124 in backup.cgi. This allows an authenticated user with privileges for the affected page to execute arbitrary commands.
Vendor | Product | Version |
---|---|---|
ipfire | ipfire | 1.49 |
ipfire | ipfire | 2.1 |
ipfire | ipfire | 2.1:core_update16 |
ipfire | ipfire | 2.11:core_update53 |
ipfire | ipfire | 2.11:core_update54 |
ipfire | ipfire | 2.11:core_update59 |
ipfire | ipfire | 2.11:core_update60 |
ipfire | ipfire | 2.11:core_update62 |
ipfire | ipfire | 2.11:core_update64 |
ipfire | ipfire | 2.13:core_update66 |
ipfire | ipfire | 2.13:core_update67 |
ipfire | ipfire | 2.13:core_update71 |
ipfire | ipfire | 2.13:core_update72 |
ipfire | ipfire | 2.13:core_update73 |
ipfire | ipfire | 2.13:core_update74 |
ipfire | ipfire | 2.13:core_update75 |
ipfire | ipfire | 2.13:core_update76 |
ipfire | ipfire | 2.13:rc_1 |
ipfire | ipfire | 2.13:rc_2 |
ipfire | ipfire | 2.15:76_rc1 |
ipfire | ipfire | 2.15:77_rc1 |
ipfire | ipfire | 2.15:77_rc2 |
ipfire | ipfire | 2.15:core_update79 |
ipfire | ipfire | 2.15:core_update81 |
ipfire | ipfire | 2.15:core_update82 |
ipfire | ipfire | 2.15:core_update83 |
ipfire | ipfire | 2.15:core_update84 |
ipfire | ipfire | 2.15:core_update85 |
ipfire | ipfire | 2.17:86_beta1 |
ipfire | ipfire | 2.17:87_rc1 |
ipfire | ipfire | 2.17:core_update88 |
ipfire | ipfire | 2.17:core_update89 |
ipfire | ipfire | 2.17:core_update91 |
ipfire | ipfire | 2.17:core_update93 |
ipfire | ipfire | 2.17:core_update95 |
ipfire | ipfire | 2.17:core_update97 |
ipfire | ipfire | 2.17:core_update98 |
ipfire | ipfire | 2.17:core_update99 |
ipfire | ipfire | 2.19:core_update100 |
ipfire | ipfire | 2.19:core_update101 |
ipfire | ipfire | 2.19:core_update102 |
ipfire | ipfire | 2.19:core_update105 |
ipfire | ipfire | 2.19:core_update106 |
ipfire | ipfire | 2.19:core_update107 |
ipfire | ipfire | 2.19:core_update108 |
ipfire | ipfire | 2.19:core_update111 |
ipfire | ipfire | 2.19:core_update112 |
ipfire | ipfire | 2.19:core_update113 |
ipfire | ipfire | 2.19:core_update114 |
ipfire | ipfire | 2.19:core_update116 |
ipfire | ipfire | 2.19:core_update117 |
ipfire | ipfire | 2.19:core_update118 |
ipfire | ipfire | 2.19:core_update119 |
ipfire | ipfire | 2.19:core_update120 |
ipfire | ipfire | 2.21:core_update122 |
ipfire | ipfire | 2.21:core_update123 |
𝑥
= Vulnerable software versions