Vulnerabilities > ANL

DATE CVE VULNERABILITY TITLE RISK
2012-07-03 CVE-2012-3366 OS Command Injection vulnerability in ANL Bcfg2 1.2.0
The Trigger plugin in bcfg2 1.2.x before 1.2.3 allows remote attackers with root access to the client to execute arbitrary commands via shell metacharacters in the UUID field to the server process (bcfg2-server).
network
low complexity
anl CWE-78
critical
9.0