CVE-2008-4796
The _httpsrequest function (Snoopy/Snoopy.class.php) in Snoopy 1.2.3 and earlier, as used in (1) ampache, (2) libphp-snoopy, (3) mahara, (4) mediamate, (5) opendb, (6) pixelpost, and possibly other products, allows remote attackers to execute arbitrary commands via shell metacharacters in https URLs.
- Snoopy Project Snoopy
- ≤ 1.2.3
- CVSS 2.0
- 10.0 HIGH
- EPSS
- 9.0% (95th percentile)
- Weakness
- CWE-78
- NVD status
- Modified
- Published
- 2008-10-30
CVE-2008-4796 at NVD
4 known exploits for CVE-2008-4796
Proof-of-concept code and exploit modules indexed by Sploitus