|
Netquery Host Parameter Arbitrary Command Execution Vulnerability
Netquery is affected a remote command execution vulnerability. An attacker can supply arbitrary commands through the 'host' parameter of the 'nquser.php' script. This can allow an attacker to execute commands in the context of an affected server and potentially gain unauthorized access. Netquery 3.11 is affected by this vulnerability. It is possible that prior versions are vulnerable as well. |
|
|
Privacy Statement |