1 results (0.002 seconds)

CVSS: 7.5EPSS: 1%CPEs: 5EXPL: 2

05 Jun 2014 — python-gnupg before 0.3.5 allows context-dependent attackers to execute arbitrary commands via shell metacharacters in unspecified vectors. python-gnupg anterior a 0.3.5 permite a atacantes dependientes de contexto ejecutar comandos arbitrarios a través de metacaracteres de shell en vectores no especificados. Multiple vulnerabilities were discovered in the Python wrapper for the Gnu Privacy Guard (GPG). Insufficient sanitising could lead to the execution of arbitrary shell commands. • http://seclists.org/oss-sec/2014/q1/243 •