← Back

CVE-2010-2246

nvd nist
Published: May 26, 2011Modified: Apr 29, 2026

JSON object

Loading...
5.1
Vector
AV:N/AC:H/Au:N/C:P/I:P/A:P
Exploitability: 4.9 / Impact: 6.4
Source: NVD

Description

feh before 1.8, when the --wget-timestamp option is enabled, might allow remote attackers to execute arbitrary commands via shell metacharacters in a URL.

Affected (23)

Products: Feh Project: Feh
1 product
Feh
Configuration A
23 vulnerable
Vulnerable SoftwareAffected Versions
Feh Project
Up to 1.7
Version 0.5.0
Version 0.6.4
Version 0.7.0
Version 0.9.9
Version 1.1.0
Version 1.2.0
Version 1.2.1
Version 1.2.3
Version 1.2.5
Version 1.2.6
Version 1.2.7
Version 1.3.0
Version 1.3.1
Version 1.3.3
Version 1.3.5
Version 1.4.1
Version 1.4.2
Version 1.4.3
Version 1.4
Version 1.5
Version 1.6.1
Version 1.6

References (8)

Source: secalert@redhat.com
Exploit
Source: secalert@redhat.com
Exploit
Source: secalert@redhat.com
Exploit
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit

Timeline

No history available yet.