7.5
CVSSv2

CVE-1999-0262

Published: 04/08/1998 Updated: 03/05/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Hylafax faxsurvey CGI script on Linux allows remote malicious users to execute arbitrary commands via shell metacharacters in the query string.

Vulnerable Product Search on Vulmon Subscribe to Product

renaud deraison faxsurvey

Exploits

source: wwwsecurityfocuscom/bid/2056/info Hylafax is a popular fax server software package designed to run on multiple UNIX operating systems Unpatched version of Hylafax ship with an insecure script, faxsurvey, which allows remote command execution with the privileges of the web server process This can be exploited simply by passing th ...