templates/config/mail.tpl in Tim Soderstrom StatsDawg 0.92 allows remote attackers to execute arbitrary programs by specifying the program name in the qshapeLocation parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Statsdawg | Tim_soderstrom | 0.92 (including) | 0.92 (including) |