CVE-2016-7787

MEDIUM

Kde-cli-tools - Code Injection

Title source: rule

Description

A maliciously crafted command line for kdesu can result in the user only seeing part of the commands that will actually get executed as super user.

Scores

CVSS v3 4.9
EPSS 0.0054
EPSS Percentile 67.3%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N

Classification

CWE
CWE-94
Status published

Affected Products (4)

kde/kde-cli-tools
opensuse/leap
opensuse/opensuse
n/a/n/a

Timeline

Published Dec 23, 2016
Tracked Since Feb 18, 2026