Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2010-4368

Опубликовано: 02 дек. 2010
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 7.5

Описание

awstats.cgi in AWStats before 7.0 on Windows accepts a configdir parameter in the URL, which allows remote attackers to execute arbitrary commands via a crafted configuration file located at a UNC share pathname.

РелизСтатусПримечание
dapper

not-affected

devel

not-affected

hardy

not-affected

karmic

not-affected

lucid

not-affected

maverick

not-affected

upstream

released

7.0

Показывать по

EPSS

Процентиль: 80%
0.01419
Низкий

7.5 High

CVSS2

Связанные уязвимости

nvd
около 15 лет назад

awstats.cgi in AWStats before 7.0 on Windows accepts a configdir parameter in the URL, which allows remote attackers to execute arbitrary commands via a crafted configuration file located at a UNC share pathname.

debian
около 15 лет назад

awstats.cgi in AWStats before 7.0 on Windows accepts a configdir param ...

github
больше 3 лет назад

awstats.cgi in AWStats before 7.0 on Windows accepts a configdir parameter in the URL, which allows remote attackers to execute arbitrary commands via a crafted configuration file located at a UNC share pathname.

EPSS

Процентиль: 80%
0.01419
Низкий

7.5 High

CVSS2