Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2010-4368

Опубликовано: 02 дек. 2010
Источник: debian
EPSS Низкий

Описание

awstats.cgi in AWStats before 7.0 on Windows accepts a configdir parameter in the URL, which allows remote attackers to execute arbitrary commands via a crafted configuration file located at a UNC share pathname.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
awstatsnot-affectedpackage

Примечания

  • looks like it's the same as CVE-2010-4367

EPSS

Процентиль: 80%
0.01419
Низкий

Связанные уязвимости

ubuntu
около 15 лет назад

awstats.cgi in AWStats before 7.0 on Windows accepts a configdir parameter in the URL, which allows remote attackers to execute arbitrary commands via a crafted configuration file located at a UNC share pathname.

nvd
около 15 лет назад

awstats.cgi in AWStats before 7.0 on Windows accepts a configdir parameter in the URL, which allows remote attackers to execute arbitrary commands via a crafted configuration file located at a UNC share pathname.

github
больше 3 лет назад

awstats.cgi in AWStats before 7.0 on Windows accepts a configdir parameter in the URL, which allows remote attackers to execute arbitrary commands via a crafted configuration file located at a UNC share pathname.

EPSS

Процентиль: 80%
0.01419
Низкий