PublicDate: 2008-05-01 19:05:00 UTC Candidate: CVE-2008-1381 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1381 Description: ZoneMinder before 1.23.3 allows remote authenticated users, and possibly unauthenticated attackers in some installations, to execute arbitrary commands via shell metacharacters in a crafted URL. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_zoneminder: upstream_zoneminder: released (1.23.3) dapper_zoneminder: DNE feisty_zoneminder: DNE gutsy_zoneminder: needed (reached end-of-life) hardy_zoneminder: ignored (reached end-of-life) intrepid_zoneminder: not-affected (1.23.3-1) jaunty_zoneminder: not-affected (1.23.3-1) karmic_zoneminder: not-affected (1.23.3-1) lucid_zoneminder: not-affected (1.23.3-1) maverick_zoneminder: not-affected (1.23.3-1) natty_zoneminder: not-affected (1.23.3-1) oneiric_zoneminder: not-affected (1.23.3-1) devel_zoneminder: not-affected (1.23.3-1)