Description

Snort Report versions < 1.3.2 contains a remote command execution vulnerability in the nmap.php and nbtscan.php scripts. These scripts fail to properly sanitize user input passed via the target GET parameter, allowing attackers to inject arbitrary shell commands. Exploitation requires no authentication and can result in full compromise of the underlying system.

INFO

Published Date :

2025-08-13T20:53:12.545Z

Last Modified :

2026-04-07T14:02:08.497Z

Source :

VulnCheck
AFFECTED PRODUCTS

The following products are affected by CVE-2011-10017 vulnerability.

Vendors Products
Snort
  • Snort

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
VS Confidentiality
VS Integrity
VS Availability
SS Confidentiality
SS Integrity
SS Availability