10
CVSSv2

CVE-2001-0113

Published: 12/03/2001 Updated: 05/09/2008
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

statsconfig.pl in OmniHTTPd 2.07 allows remote malicious users to execute arbitrary commands via the mostbrowsers parameter, whose value is used as part of a generated Perl script.

Vulnerable Product Search on Vulmon Subscribe to Product

omnicron omnihttpd 2.0.7

Exploits

source: wwwsecurityfocuscom/bid/2211/info OmniHTTPD is a compact Windows based web server by Omnicron Technologies OmniHTTPD has various features including multiple domain support, keep-alive connections, supports virtual IP and non-IP servers and standard CGI support Due to the implementation of 'statsconfigpl' multiple vulnerabiliti ...