10
CVSSv2

CVE-2002-0436

Published: 26/07/2002 Updated: 30/10/2018
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

sscd_suncourier.pl CGI script in the Sun Sunsolve CD pack allows remote malicious users to execute arbitrary commands via shell metacharacters in the email address parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

sun sunos 5.7

sun solaris 7.0

sun sunos 5.8

sun solaris 8.0

Exploits

source: wwwsecurityfocuscom/bid/4269/info The Sunsolve CD is part of the Solaris Media pack It is included as a documentation resource, and is available for the Solaris Operating Environment A CGI script included with the CD does not adequately sanitize input Due to a design failure which does not remove special characters such as the ...