mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-07 11:06:19 +00:00
865 B
865 B
CVE-2005-0116
Description
AWStats 6.1, and other versions before 6.3, allows remote attackers to execute arbitrary commands via shell metacharacters in the configdir parameter to aswtats.pl.
POC
Reference
- http://packetstormsecurity.org/0501-exploits/AWStatsVulnAnalysis.pdf
- http://packetstormsecurity.org/0501-exploits/AWStatsVulnAnalysis.pdf