CVE Vulnerabilities

CVE-2005-0436

Published: May 02, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Direct code injection vulnerability in awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to execute portions of Perl code via the PluginMode parameter.

Affected Software

NameVendorStart VersionEnd Version
AwstatsAwstats6.3 (including)6.3 (including)
AwstatsAwstats6.4 (including)6.4 (including)
AwstatsUbuntudapper*
AwstatsUbuntudevel*
AwstatsUbuntuedgy*
AwstatsUbuntufeisty*

References