Redmine.SCM.Repository.Command.Execution

description-logoDescription

This indicates a possible atttack against an arbitrary code execution vulnerability in Redmine, which has a flaw related to the bazaar repository adapter.

affected-products-logoAffected Products

Redmine 0.9.x
Redmine 1.0.0
Redmine 1.0.1
Redmine 1.0.2
Redmine 1.0.3
Redmine 1.0.4

Impact logoImpact

System compromise

recomended-action-logoRecommended Actions

Upgrade to version 1.0.5 or higher:
http://www.redmine.org/news/49

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)