Unrated severityNVD Advisory· Published Sep 16, 2005· Updated Apr 16, 2026
CVE-2005-2877
CVE-2005-2877
Description
The history (revision control) function in TWiki 02-Sep-2004 and earlier allows remote attackers to execute arbitrary code via shell metacharacters, as demonstrated via the rev parameter to TWikiUsers.
Affected products
5cpe:2.3:a:twiki:twiki:2000-12-01:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:twiki:twiki:2000-12-01:*:*:*:*:*:*:*
- cpe:2.3:a:twiki:twiki:2001-12-01:*:*:*:*:*:*:*
- cpe:2.3:a:twiki:twiki:2003-02-01:*:*:*:*:*:*:*
- cpe:2.3:a:twiki:twiki:2004-09-01:*:*:*:*:*:*:*
- cpe:2.3:a:twiki:twiki:2004-09-02:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- twiki.org/cgi-bin/view/Codev/SecurityAlertExecuteCommandsWithRevnvdPatchVendor Advisory
- www.kb.cert.org/vuls/id/757181nvdPatchThird Party AdvisoryUS Government Resource
- www.securityfocus.com/bid/14834nvdExploitPatch
- marc.infonvd
News mentions
0No linked articles in our index yet.