CVE-2010-4099 Information

Description

ess.pm in NitroSecurity NitroView ESM 8.4.0a when ESSPMDebug is enabled allows remote attackers to execute arbitrary commands via shell metacharacters in the Request parameter to ess.

Reference

http://www.exploit-db.com/exploits/15318 http://www.securityfocus.com/bid/44421 http://www.securitytracker.com/id?1024639 https://exchange.xforce.ibmcloud.com/vulnerabilities/62768

Share on: