CVE-2008-1467 describes a user-assisted remote command execution vulnerability affecting CenterIM 4.22.3 and earlier. An attacker could embed shell metacharacters within a URI, which, if selected and launched by a victim in the message window, would execute arbitrary commands. This vulnerability has a CVSS score of 6.8 (Medium), indicating a network-based attack with medium complexity, potentially leading to partial confidentiality, integrity, and availability compromise. While not actively exploited in the wild or on CISA's KEV catalog, exploit code is publicly available via ExploitDB, though community discussion and media coverage are minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
4.22.3CPE matchmatch criteria | cpe:2.3:a:centerim:centerim:4.22.3:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:P/I:P/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.