Description
Plexus-utils before 3.0.16 is vulnerable to command injection because it does not correctly process the contents of double quoted strings.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-1236-1 | plexus-utils security update |
Debian DLA |
DLA-1237-1 | plexus-utils2 security update |
Debian DSA |
DSA-4146-1 | plexus-utils security update |
Debian DSA |
DSA-4149-1 | plexus-utils2 security update |
Github GHSA |
GHSA-8vhq-qq4p-grq3 | OS Command Injection in Plexus-utils |
References
History
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Thu, 10 Oct 2024 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Codehaus-plexus
Codehaus-plexus plexus-utils |
|
| CPEs | cpe:2.3:a:codehaus-plexus:plexus-utils:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Plexus-utils Project
Plexus-utils Project plexus-utils |
Codehaus-plexus
Codehaus-plexus plexus-utils |
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T22:00:41.635Z
Reserved: 2018-01-03T00:00:00.000Z
Link: CVE-2017-1000487
No data.
Status : Modified
Published: 2018-01-03T20:29:00.703
Modified: 2024-11-21T03:04:50.743
Link: CVE-2017-1000487
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
Debian DSA
Github GHSA