Devscripts
Vendor:
First CVE: Sep 4, 2009 · Active for 16 years
14
Total CVEs
More Total CVEs than 91% of tracked products
2.8
Avg CVEs / Year
Higher CVE frequency than 75% of tracked products
7.0
Avg CVSS
Higher Avg CVSS than 42% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Devscripts over time
Volume of CVEsAvg CVSS Base Score
First CVE
Sep 4, 2009
16 years ago
Most Recent CVE
Sep 25, 2017
3,227 days ago
CVE Severity & Scoring
Devscripts14 CVEs
36%
57%
All CVEs352,785 CVEs
45%
40%
11%
LowMediumHigh
Attack Vector
Local1 (7.1%)
Network1 (7.1%)
Unknown12 (85.7%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low2 (14.3%)
High0 (0.0%)
Unknown12 (85.7%)
User Interaction
None2 (14.3%)
Unknown12 (85.7%)
Required0 (0.0%)
Privileges Required
Low1 (7.1%)
High0 (0.0%)
None1 (7.1%)
Unknown12 (85.7%)
Top CVEs
Signals from CVEs in this product scope (14 CVEs).
14 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2012-0211HIGH debdiff.pl in devscripts 2.10.x before 2.10.69 and 2.11.x before 2.11.4 allows remote attackers to execute arbitrary code via a crafted tarball file name in the top-level directory | Jun 16, 2012 | 9.3 | 29 | NO | NO |
CVE-2012-0210HIGH debdiff.pl in devscripts 2.10.x before 2.10.69 and 2.11.x before 2.11.4 allows remote attackers to obtain system information and execute arbitrary code via the file name in a (1) . | Jun 16, 2012 | 9.3 | 29 | NO | NO |
CVE-2009-2946HIGH Eval injection vulnerability in scripts/uscan.pl before Rev 1984 in devscripts allows remote attackers to execute arbitrary Perl code via crafted pathnames on distribution servers | Sep 4, 2009 | 9.3 | 29 | NO | NO |
CVE-2012-0212HIGH debdiff.pl in devscripts 2.10.x before 2.10.69 and 2.11.x before 2.11.4 allows remote attackers to execute arbitrary code via shell metacharacters in the file name argument. | Jun 16, 2012 | 9.3 | 28 | NO | NO |
CVE-2012-2240HIGH scripts/dscverify.pl in devscripts before 2.12.3 allows remote attackers to execute arbitrary commands via unspecified vectors related to "arguments to external commands." | Oct 1, 2012 | 7.5 | 23 | NO | NO |
CVE-2015-5705HIGH Argument injection vulnerability in devscripts before 2.15.7 allows remote attackers to write to arbitrary files via a crafted symlink and crafted filename. | Sep 6, 2017 | 7.5 | 22 | NO | NO |
CVE-2012-2242MEDIUM scripts/dget.pl in devscripts before 2.10.73 allows remote attackers to execute arbitrary commands via a crafted (1) .dsc or (2) .changes file, related to "arguments to external co | Oct 1, 2012 | 6.8 | 22 | NO | NO |
CVE-2015-5704HIGH scripts/licensecheck.pl in devscripts before 2.15.7 allows local users to execute arbitrary shell commands. | Sep 25, 2017 | 7.8 | 21 | NO | NO |
CVE-2013-7050MEDIUM The get_main_source_dir function in scripts/uscan.pl in devscripts before 2.13.8, when using USCAN_EXCLUSION, allows remote attackers to execute arbitrary commands via shell metach | Dec 13, 2013 | 6.8 | 21 | NO | NO |
CVE-2013-6888HIGH Uscan in devscripts before 2.13.9 allows remote attackers to execute arbitrary code via a crafted tarball. | Jan 7, 2014 | 7.5 | 20 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (14 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (14 CVEs).
Media Mentions
Signals from CVEs in this product scope (14 CVEs).
Top CNAs Publishing CVEs For Devscripts
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 2.9.27 | 2 | 6.3 | 2.3% | 0 | 0 |
| 2.9.26 | 2 | 6.3 | 2.3% | 0 | 0 |
| 2.9.25 | 2 | 6.3 | 2.3% | 0 | 0 |
| 2.9.24 | 2 | 6.3 | 2.3% | 0 | 0 |
| 2.9.23 | 2 | 6.3 | 2.3% | 0 | 0 |
| 2.9.22 | 2 | 6.3 | 2.3% | 0 | 0 |
| 2.9.21 | 2 | 6.3 | 2.3% | 0 | 0 |
| 2.8.14 | 2 | 6.3 | 2.3% | 0 | 0 |
| 2.7.0 | 2 | 6.3 | 2.3% | 0 | 0 |
| 2.14.1 | 1 | 5.0 | 3.7% | 0 | 0 |
| 2.13.7 | 1 | 7.5 | 4.1% | 0 | 0 |
| 2.13.6 | 2 | 7.2 | 3.0% | 0 | 0 |
| 2.13.5 | 3 | 6.7 | 2.8% | 0 | 0 |
| 2.13.4 | 2 | 7.2 | 3.0% | 0 | 0 |
| 2.13.3 | 2 | 7.2 | 3.0% | 0 | 0 |
| 2.13.2 | 2 | 7.2 | 3.0% | 0 | 0 |
| 2.13.1 | 2 | 7.2 | 3.0% | 0 | 0 |
| 2.13.0 | 2 | 7.2 | 3.0% | 0 | 0 |
| 2.12.1 | 2 | 6.3 | 2.3% | 0 | 0 |
| 2.12.0 | 3 | 4.6 | 1.6% | 0 | 0 |