01642 06 11 11 Arrange Call

Arbitrary Command Execution via Href Attribute in Gajim

CVE-2012-2085 · MEDIUM

CVE-2012-2085

The exec_command function in common/helpers.py in Gajim before 0.15 allows user-assisted remote attackers to execute arbitrary commands via shell metacharacters in an href attribute.

Learn more about our User Device Pen Test.