CVE-2008-1136

The Utils::runScripts function in src/utils.cpp in vdccm 0.92 through 0.10.0 in SynCE (SynCE-dccm) allows remote attackers to execute arbitrary commands via shell metacharacters in a certain string to TCP port 5679.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:synce:synce:0.10.0:*:*:*:*:*:*:*
cpe:2.3:a:synce:synce:0.92:*:*:*:*:*:*:*

History

No history.

Information

Published : 2008-03-04 19:44

Updated : 2023-12-10 10:40


NVD link : CVE-2008-1136

Mitre link : CVE-2008-1136

CVE.ORG link : CVE-2008-1136


JSON object : View

Products Affected

synce

  • synce
CWE
CWE-20

Improper Input Validation

CWE-94

Improper Control of Generation of Code ('Code Injection')