Check Point Reference: | CPAI-2014-1883 |
Date Published: | 22 Oct 2014 |
Severity: | High |
Last Updated: | Wednesday 22 October, 2014 |
Source: | CVE-2014-4511 |
Industry Reference: | CVE-2014-4511 |
Protection Provided by: |
Security Gateway |
Who is Vulnerable? | GitList 0.5.0 and prior |
Vulnerability Description | A code execution vulnerability has been reported in GitList. The vulnerability is due to insufficient input validation for meta-characters passed in the request URL. A remote attacker could exploit this vulnerability by sending a malicious request to the vulnerable server. |
SmartView Tracker will log the following entries:
Attack Name: Web Server Enforcement Violation.
Attack Information: GitList URL Remote Command Execution