CVE Vulnerabilities

CVE-2005-0436

Published: May 02, 2005 | Modified: Nov 20, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

Direct code injection vulnerability in awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to execute portions of Perl code via the PluginMode parameter.

Affected Software

Name Vendor Start Version End Version
Awstats Awstats 6.3 (including) 6.3 (including)
Awstats Awstats 6.4 (including) 6.4 (including)
Awstats Ubuntu dapper *
Awstats Ubuntu devel *
Awstats Ubuntu edgy *
Awstats Ubuntu feisty *

References