VDB
CVE-2018-0494
CVE-2018-0494
PUBLISHED
EPSS 65.86% · 98.5th percentile
Risk Scores
EPSS Score
65.86%
98.5th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Amazon | wget |
Exploit Intelligence
- https://sintonen.fi/advisories/gnu-wget-cookie-injection.txt (nist-nvd)
- https://www.exploit-db.com/exploits/44601/ (nist-nvd)
- CVE-2008-5161 OpenSSH 4.7p1 Audit Helper Automates version checking and credential auditing of legacy OpenSSH 4.7p1 (Debian-8ubuntu1) targets by driving Metasploit’s auxiliary/scanner/ssh/ssh_login module from Python via pwntools. (github-poc)
- CVE-2008-5161 OpenSSH 4.7p1 Audit Helper Automates version checking and credential auditing of legacy OpenSSH 4.7p1 (Debian-8ubuntu1) targets by driving Metasploit’s auxiliary/scanner/ssh/ssh_login module from Python via pwntools. (github-poc)
- CVE-2008-5161 OpenSSH 4.7p1 Audit Helper Automates version checking and credential auditing of legacy OpenSSH 4.7p1 (Debian-8ubuntu1) targets by driving Metasploit’s auxiliary/scanner/ssh/ssh_login module from Python via pwntools. (github-poc)
- CVE-2008-5161 OpenSSH 4.7p1 Audit Helper Automates version checking and credential auditing of legacy OpenSSH 4.7p1 (Debian-8ubuntu1) targets by driving Metasploit’s auxiliary/scanner/ssh/ssh_login module from Python via pwntools. (github-poc)
- CVE-2008-5161 OpenSSH 4.7p1 Audit Helper Automates version checking and credential auditing of legacy OpenSSH 4.7p1 (Debian-8ubuntu1) targets by driving Metasploit’s auxiliary/scanner/ssh/ssh_login module from Python via pwntools. (github-poc)
- GNU wget - Cookie Injection Vulnerability (0day-today)
- GNU wget - Cookie Injection Vulnerability (0day-today)
Timeline
- May 6, 2018 CVE Published
- May 9, 2018 PoC Published
- Apr 14, 2021 EPSS Score
- Feb 4, 2022 EPSS Score
- Mar 28, 2023 EPSS Score
- Apr 15, 2023 EPSS Score
- May 8, 2023 EPSS Score
- May 18, 2023 EPSS Score
- Jun 4, 2023 EPSS Score
- Jun 23, 2023 EPSS Score
- Jul 8, 2023 EPSS Score
- Sep 27, 2023 EPSS Score
References
- ALAS-2018-1040: wget (medium) advisory