GForge Unspecified Remote Arbitrary Command Execution Vulnerability

GForge is prone to a remote command-execution vulnerability because the application fails to sanitize user-supplied data passed through URI parameters.

An attacker can supply arbitrary shell commands through the affected parameter to be run in the context of the affected server.


 

Privacy Statement
Copyright 2010, SecurityFocus