Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
awstats awstats vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2005-2732
AWStats 6.4, and possibly earlier versions, allows remote malicious users to obtain sensitive information via a file that does not exist in the config parameter, which reveals the path in an error message.
Awstats Awstats
NA
CVE-2005-1527
Eval injection vulnerability in awstats.pl in AWStats 6.4 and previous versions, when a URLPlugin is enabled, allows remote malicious users to execute arbitrary Perl code via the HTTP Referrer, which is used in a $url parameter that is inserted into an eval function call.
Awstats Awstats
Canonical Ubuntu Linux 5.04
Debian Debian Linux 3.1
Debian Debian Linux 3.0
NA
CVE-2005-0363
awstats.pl in AWStats 4.0 and 6.2 allows remote malicious users to execute arbitrary commands via shell metacharacters in the config parameter.
Awstats Awstats 4.0
Awstats Awstats 6.2
NA
CVE-2005-0436
Direct code injection vulnerability in awstats.pl in AWStats 6.3 and 6.4 allows remote malicious users to execute portions of Perl code via the PluginMode parameter.
Awstats Awstats 6.3
Awstats Awstats 6.4
1 EDB exploit
NA
CVE-2005-0437
Directory traversal vulnerability in awstats.pl in AWStats 6.3 and 6.4 allows remote malicious users to include arbitrary Perl modules via .. (dot dot) sequences in the loadplugin parameter.
Awstats Awstats 6.4
Awstats Awstats 6.3
NA
CVE-2005-0435
awstats.pl in AWStats 6.3 and 6.4 allows remote malicious users to read server web logs by setting the loadplugin and pluginmode parameters to rawlog.
Awstats Awstats 6.3
Awstats Awstats 6.4
1 EDB exploit
NA
CVE-2005-0438
awstats.pl in AWStats 6.3 and 6.4 allows remote malicious users to obtain sensitive information by setting the debug parameter.
Awstats Awstats 6.3
Awstats Awstats 6.4
1 EDB exploit
NA
CVE-2005-0362
awstats.pl in AWStats 6.2 allows remote malicious users to execute arbitrary commands via shell metacharacters in the (1) "pluginmode", (2) "loadplugin", or (3) "noloadplugin" parameters.
Awstats Awstats 4.0
Awstats Awstats 5.0
Awstats Awstats 5.2
Awstats Awstats 5.4
Awstats Awstats 6.0
Awstats Awstats 6.2
Awstats Awstats 5.1
Awstats Awstats 5.3
Awstats Awstats 6.1
Awstats Awstats 6.3
Awstats Awstats 5.5
Awstats Awstats 5.7
Awstats Awstats 5.8
Awstats Awstats 5.9
NA
CVE-2005-0116
AWStats 6.1, and other versions prior to 6.3, allows remote malicious users to execute arbitrary commands via shell metacharacters in the configdir parameter to aswtats.pl.
Awstats Awstats
4 EDB exploits
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33228
CVE-2024-20361
log injection
bypass
CVE-2024-4985
CVE-2024-35223
CVE-2024-29849
CVE-2024-31893
IMAP
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3