Pidgin Unspecified Remote Command Execution Vulnerability
BID:24904
Info
Pidgin Unspecified Remote Command Execution Vulnerability
| Bugtraq ID: | 24904 |
| Class: | Input Validation Error |
| CVE: |
CVE-2007-3841 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 13 2007 12:00AM |
| Updated: | May 07 2015 05:37PM |
| Credit: | This issue was reported in WabiSabiLabi security advisory ZD-00000035. |
| Vulnerable: |
Pidgin Pidgin 2.0.2 |
| Not Vulnerable: | |
Discussion
Pidgin Unspecified Remote Command Execution Vulnerability
Pidgin is prone to an unspecified remote command-execution vulnerability because the application fails to adequately sanitize user-supplied data.
Attackers can exploit this issue to execute arbitrary commands with the privileges of the affected application. Successful exploits may facilitate a compromise of the application and the affected computer.
Pidgin is prone to an unspecified remote command-execution vulnerability because the application fails to adequately sanitize user-supplied data.
Attackers can exploit this issue to execute arbitrary commands with the privileges of the affected application. Successful exploits may facilitate a compromise of the application and the affected computer.
Exploit / POC
Pidgin Unspecified Remote Command Execution Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Pidgin Unspecified Remote Command Execution Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].