Описание
The campas CGI program provided with some NCSA web servers allows an attacker to execute arbitrary commands via encoded carriage return characters in the query string, as demonstrated by reading the password file.
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:ncsa:campas:*:*:*:*:*:*:*:*
cpe:2.3:a:ncsa:servers:*:*:*:*:*:*:*:*
EPSS
Процентиль: 90%
0.05263
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 3 лет назад
The campas CGI program provided with some NCSA web servers allows an attacker to execute arbitrary commands via encoded carriage return characters in the query string, as demonstrated by reading the password file.
EPSS
Процентиль: 90%
0.05263
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other