Bajie HTTP JServer 0.78, and other versions prior to 0.80, allows remote malicious users to execute arbitrary commands via shell metacharacters in an HTTP request for a CGI program that does not exist.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
bajie java http server |