7.5
CVSSv2

CVE-1999-1436

Published: 08/07/1998 Updated: 18/10/2016
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Ray Chan WWW Authorization Gateway 0.1 CGI program allows remote malicious users to execute arbitrary commands via shell metacharacters in the "user" parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

ray chan www authorization gateway 0.1

Exploits

source: wwwsecurityfocuscom/bid/152/info A vulnerability exists in the WWW Authorization Gateway program written by Ray Chan Version 10 fails to eliminate characters with special meaning to the shell prior to executing a command As a result, an attacker can utilize certain characters to execute arbitrary commands on a system remotely, ...