userreg.cgi CGI program in MailStudio 2000 2.0 and previous versions allows remote malicious users to execute arbitrary commands via shell metacharacters.
source: wwwsecurityfocuscom/bid/1335/info
MailStudio 2000 is vulnerable to multiple attacks
It is possible for a remote user to gain read access to all files located on the server via the usage of the "/" string passed to a CGI, thereby compromising the confidentiality of other users email and password, as well as other configuration ...