[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248268

 
 

909

 
 

195051

 
 

282

Paid content will be excluded from the download.


Download | Alert*


oval:org.secpod.oval:def:700212
It was discovered that AWStats did not correctly filter the LoadPlugin configuration option. A local attacker on a shared system could use this to inject arbitrary code into AWStats.

oval:org.secpod.oval:def:1083
The host is installed with AWStats and is prone to directory traversal vulnerability. A flaw is present in the application, which fails to validate input. Successful exploitation could allow remote attackers to to have an unspecified impact via a crafted LoadPlugin directory.

CPE    1
cpe:/a:awstats:awstats
CWE    1
CWE-22
*CVE
CVE-2010-4369

© SecPod Technologies