Variable extraction vulnerability in Ian Bezanson Apache Stats before 0.0.3 beta allows attackers to overwrite critical variables, with unknown impact, when the extract function is used on the _REQUEST superglobal array.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Apache_stats | Apache_stats | 0.0.1_beta (including) | 0.0.1_beta (including) |
| Apache_stats | Apache_stats | 0.0.2_beta (including) | 0.0.2_beta (including) |