CVE-2013-7392

Gitlist - Command Injection

Title source: llm

Description

Gitlist allows remote attackers to execute arbitrary commands via shell metacharacters in a file name to Source/.

Exploits (2)

exploitdb WORKING POC
pythonremotemultiple
https://www.exploit-db.com/exploits/33929
exploitdb WORKING POC
rubyremotemultiple
https://www.exploit-db.com/exploits/33990

Scores

EPSS 0.0871
EPSS Percentile 92.5%

Details

Status published
Products (1)
gitlist/gitlist
Published Jul 22, 2014
Tracked Since Feb 18, 2026