Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Community Link Pro Login.CGI File Parameter Remote Command Execution Vulnerability

Community Link Pro is prone to a remote arbitrary command execution vulnerability. This issue presents itself due to insufficient sanitization of user-supplied data.

Due to this, an attacker can prefix arbitrary commands with the '|' character and have them executed in the context of the server.







 

Privacy Statement
Copyright 2009, SecurityFocus