The send_to_sourcefire function in manage_sql.c in OpenVAS Manager 3.x before 3.0.4 allows remote attackers to execute arbitrary commands via the (1) IP address or (2) port number field in an OMP request.
| Software | From | Fixed in |
|---|---|---|
| openvas / openvas_manager | 3.0-beta5 | 3.0-beta5.x |
| openvas / openvas_manager | 3.0.0 | 3.0.0.x |
| openvas / openvas_manager | 3.0.2 | 3.0.2.x |
| openvas / openvas_manager | 3.0.1 | 3.0.1.x |
| openvas / openvas_manager | 3.0-beta3 | 3.0-beta3.x |
| openvas / openvas_manager | 3.0-beta4 | 3.0-beta4.x |
| openvas / openvas_manager | 3.0-beta8 | 3.0-beta8.x |
| openvas / openvas_manager | 3.0-beta6 | 3.0-beta6.x |
| openvas / openvas_manager | 3.0-rc1 | 3.0-rc1.x |
| openvas / openvas_manager | 3.0-beta2 | 3.0-beta2.x |
| openvas / openvas_manager | 3.0-beta1 | 3.0-beta1.x |
| openvas / openvas_manager | 3.0.3 | 3.0.3.x |
| openvas / openvas_manager | 3.0-beta7 | 3.0-beta7.x |