← العودة للجدول
CVE-2014-2914
CVE-2014-2914 — fish (aka fish-shell) 2.0.0 before 2.1.1 does not restrict access to the configu
📅 2020-01-28
🔴 Critical 🔥 No NVD Exploit Vulnerability CVSS 9.8

📋 الوصف الكامل

fish (aka fish-shell) 2.0.0 before 2.1.1 does not restrict access to the configuration service (aka fish_config), which allows remote attackers to execute arbitrary code via unspecified vectors, as demonstrated by set_prompt.

💻 الأنظمة المتأثرة

fish (aka fish-shell)

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2014-2914

📡 المصدر

NVD

✅ الحلول والتخفيف

Refer to CVE-2014-2914 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←