nlog CGI scripts do not properly filter shell metacharacters from the IP address argument, which could allow remote attackers to execute certain commands via (1) nlog-smb.pl or (2) rpc-nlog.pl.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Nlog | Nlog | * | * |