[Forgot Password]
Login  Register Subscribe

30389

 
 

423868

 
 

247085

 
 

909

 
 

194218

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-1508 diatheke -- insufficient input sanitising

ID: oval:org.mitre.oval:def:8157Date: (C)2009-12-15   (M)2021-09-11
Class: PATCHFamily: unix




Dan Dennison discovered that Diatheke, a CGI program to make a bible website, performs insufficient sanitising of a parameter, allowing a remote attacker to execute arbitrary shell commands as the web server user.

Platform:
Debian 4.0
Debian 3.1
Product:
diatheke
Reference:
DSA-1508
CVE-2008-0932
CVE    1
CVE-2008-0932
CPE    2
cpe:/o:debian:debian_linux:3.1
cpe:/o:debian:debian_linux:4.0

© SecPod Technologies