7.5
CVSSv2

CVE-2002-0749

Published: 12/08/2002 Updated: 05/09/2008
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

CGIscript.net csMailto.cgi allows remote malicious users to execute arbitrary commands via shell metacharacters in the form-attachment field.

Vulnerable Product Search on Vulmon Subscribe to Product

cgiscript.net csmailto

Exploits

source: wwwsecurityfocuscom/bid/4579/info CGIScriptNET csMailto is a Perl script designed to support multiple mailto: forms A vulnerability has been reported in some versions of this script Reportedly, configuration values used by the script are contained in hidden form values As a result, a remote attacker may trivially modify these ...