« List of all CVEs

CVE-2008-5916

Published: 1/21/2009 Last updated: 8/7/2024 Reserved: 1/20/2009

gitweb/gitweb.perl in gitweb in Git 1.6.x before 1.6.0.6, 1.5.6.x before 1.5.6.6, 1.5.5.x before 1.5.5.6, 1.5.4.x before 1.5.4.7, and other versions after 1.4.3 allows local repository owners to execute arbitrary commands by modifying the diff.external configuration variable and executing a crafted gitweb query.

CNA assigner: mitre (8254265b-2729-46b6-b9e3-3dfca2d5bfca) Requested by: n/a

Opam packages affected (1)

conf-git

Products affected (1)

Product Vendor Version
n/a n/a FortiMail before 7.0.0

References (28)