Show filters
73 Total Results
Displaying 71-73 of 73
Sort by:
Attacker Value
Unknown

CVE-2011-4192

Disclosure Date: April 16, 2014 (last updated October 05, 2023)
kiwi before 4.85.1, as used in SUSE Studio Onsite 1.2 before 1.2.1 and SUSE Studio Extension for System z 1.2 before 1.2.1, allows attackers to execute arbitrary commands as demonstrated by "double quotes in kiwi_oemtitle of .profile."
0
Attacker Value
Unknown

CVE-2011-4195

Disclosure Date: April 16, 2014 (last updated October 05, 2023)
kiwi before 4.98.05, as used in SUSE Studio Onsite 1.2 before 1.2.1 and SUSE Studio Extension for System z 1.2 before 1.2.1, allows attackers to execute arbitrary commands via shell metacharacters in an image name.
0
Attacker Value
Unknown

CVE-2013-3712

Disclosure Date: February 26, 2014 (last updated October 05, 2023)
SUSE Studio Onsite 1.3.x before 1.3.6 and SUSE Studio Extension for System z 1.3 uses "static" secret tokens, which has unspecified impact and vectors.
0