CVE-2005-0362 Information

Description

awstats.pl in AWStats 6.2 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) \pluginmode\ (2) \loadplugin\ or (3) \noloadplugin\ parameters.

Reference

http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=294488 http://www.osvdb.org/16089

Share on: