4 results (0.005 seconds)

CVSS: 7.8EPSS: 0%CPEs: 4EXPL: 0

Windows Terminal Remote Code Execution Vulnerability Vulnerabilidad de ejecución remota de código en terminal de Windows. • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2022-44702 •

CVSS: 3.5EPSS: 0%CPEs: 2EXPL: 0

Cross-site scripting (XSS) vulnerability in the Terminal PHP Shell (terminal) extension 0.3.2 and earlier for TYPO3 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors. Vulnerabilidad de ejecución de secuencias de comandos en sitios cruzados en la extensión Terminal PHP Shell (terminal) v0.3.2 y anteriores para TYPO3, permite a usuarios autenticados remotamente inyectar secuencias de comandos web o HTML a través de vectores no especificados. • http://osvdb.org/78796 http://typo3.org/teams/security/security-bulletins/typo3-extensions/typo3-ext-sa-2012-001 http://www.securityfocus.com/bid/51849 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 6.8EPSS: 0%CPEs: 2EXPL: 0

Cross-site request forgery (CSRF) vulnerability in the Terminal PHP Shell (terminal) extension 0.3.2 and earlier for TYPO3 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors. Vulnerabilidad de falsificación de petición en sitios cruzados (CSRF) en la extensión Terminal PHP Shell (terminal) v0.3.2 y anteriores para TYPO3, permite a atacantes remotos secuestrar la autenticación de victimas no especificadas a través de vectores desconocidos. • http://osvdb.org/78797 http://typo3.org/teams/security/security-bulletins/typo3-extensions/typo3-ext-sa-2012-001 http://www.securityfocus.com/bid/51849 • CWE-352: Cross-Site Request Forgery (CSRF) •

CVSS: 7.2EPSS: 4%CPEs: 2EXPL: 2

Terminal 1.3 in Apple Mac OS X 10.2 allows remote attackers to execute arbitrary commands via shell metacharacters in a telnet:// link, which is executed by Terminal.app window. • https://www.exploit-db.com/exploits/21815 http://apple.slashdot.org/apple/02/09/21/122236.shtml?tid=172 http://lists.apple.com/archives/security-announce/2002/Sep/msg00001.html http://www.iss.net/security_center/static/10156.php http://www.securityfocus.com/bid/5768 • CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') •