CVE-2014-8515

BitTorrent - Remote Command Execution via Web Interface

Title source: llm
STIX 2.1

Description

The web interface in BitTorrent allows remote attackers to execute arbitrary commands by leveraging knowledge of the pairing values and a crafted request to port 10000.

References (1)

Core 1
Core References
Third Party Advisory x_refsource_misc
http://www.zerodayinitiative.com/advisories/ZDI-14-418/

Scores

EPSS 0.0241
EPSS Percentile 82.0%

Details

CWE
CWE-77
Status published
Products (1)
bittorrent/bittorrent
Published Dec 12, 2014
Tracked Since Feb 18, 2026