VDB
CVE-2007-5208
CVE-2007-5208
PUBLISHED
CVSS 7.599999904632568 HIGH
hpssd in Hewlett-Packard Linux Imaging and Printing Project (hplip) 1.x and 2.x before 2.7.10 allows context-dependent attackers to execute arbitrary commands via shell metacharacters in a from address, which is not properly handled when invoking sendmail.
EPSS 67.26% · 99.2th percentile
Risk Scores
CVSS 2.0
7.599999904632568
EPSS Score
67.26%
99.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| hp | linux_imaging_and_printing_project | 0, 1.0 |
Timeline
- Oct 13, 2007 CVE Published
- Oct 9, 2010 PoC Published
- May 29, 2018 PoC Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 17, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- May 26, 2023 EPSS Score
References
- FEDORA-2007-2527 vendor-advisory
- ADV-2007-3479 vdb
- 27271 third-party-advisory
- 27202 third-party-advisory
- http://bugs.gentoo.org/show_bug.cgi?id=195565 url
- https://launchpad.net/bugs/149121 url
- 27224 third-party-advisory
- 27221 third-party-advisory
- GLSA-200710-26 vendor-advisory
- USN-530-1 vendor-advisory
- DSA-1462 vendor-advisory
- 28453 third-party-advisory
- 27397 third-party-advisory
- 1018806 vdb
- 26054 vdb
- MDKSA-2007:201 vendor-advisory
- 27332 third-party-advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=319921 url
- SUSE-SR:2007:021 vendor-advisory
- 27232 third-party-advisory
…and 6 more