info
discussion
exploit
solution
references
Multiple Vendor whois CGI Metacharacter Vulnerability
Depending on the specific script used, the following syntaxes have been shown to allow intrusion:
1) ;command
2) ";command
3) ;command;
Privacy Statement
Copyright 2010, SecurityFocus