CVE-2008-7158 Information
Feb 14, 2021
cve
Description
Numara FootPrints 7.5a through 7.5a1 and 8.0 through 8.0a allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) transcriptFile parameter to MRcgi/MRchat.pl or (2) LOADFILE parameter to MRcgi/MRABLoad2.pl. NOTE: some of these details are obtained from third party information.
Reference
http://osvdb.org/42813 http://osvdb.org/42816 http://secunia.com/advisories/28390 http://www.securityfocus.com/bid/27373 https://exchange.xforce.ibmcloud.com/vulnerabilities/39810 https://footprintssupport.numarasoftware.com/MRcgi/MRTicketPage.pl?USER=&MRP=0&PROJECTID=4&MR=89552&MAXMININC=&MAJOR_MODE=DETAILS
Share on: