CVE-2009-4372

AlienVault OSSIM < 2.1.5-4 - Remote Command Execution via UniqueID Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2009-4372. PoCs published by Nahuel Grisolia.

AI-analyzed exploit summary The exploit demonstrates a remote command execution vulnerability in OSSIM due to insufficient input sanitization. It provides multiple URLs with command injection payloads to execute arbitrary commands on the target system.

Description

AlienVault Open Source Security Information Management (OSSIM) 2.1.5, and possibly other versions before 2.1.5-4, allows remote attackers to execute arbitrary commands via shell metacharacters in the uniqueid parameter to (1) wcl.php, (2) storage_graphs.php, (3) storage_graphs2.php, (4) storage_graphs3.php, and (5) storage_graphs4.php in sem/.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Nahuel Grisolia · textwebappsphp
https://www.exploit-db.com/exploits/10480

The exploit demonstrates a remote command execution vulnerability in OSSIM due to insufficient input sanitization. It provides multiple URLs with command injection payloads to execute arbitrary commands on the target system.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: OSSIM 2.1.5
No auth needed
Prerequisites: Network access to the OSSIM server
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (11)

Core 11
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/54843
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/61151
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/37727
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/37375
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/61152
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/61153
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/61154
Exploit exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/10480
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/61155

Scores

EPSS 0.0482
EPSS Percentile 90.8%

Details

CWE
CWE-20
Status published
Products (4)
alienvault/open_source_security_information_management 2.1.5
alienvault/open_source_security_information_management 2.1.5-1
alienvault/open_source_security_information_management 2.1.5-2
alienvault/open_source_security_information_management 2.1.5-3
Published Dec 21, 2009
Tracked Since Feb 18, 2026