6.8
CVSSv2

CVE-2002-1316

Published: 29/11/2002 Updated: 18/10/2016
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

importInfo in the Admin Server for iPlanet WebServer 4.x, up to SP11, allows the web administrator to execute arbitrary commands via shell metacharacters in the dir parameter, and possibly allows remote malicious users to exploit this vulnerability via a separate XSS issue (CVE-2002-1315).

Vulnerable Product Search on Vulmon Subscribe to Product

iplanet iplanet web server 4.1 sp8

iplanet iplanet web server 4.1

iplanet iplanet web server 4.1 sp11

iplanet iplanet web server 4.1 sp4

iplanet iplanet web server 4.1 sp2

iplanet iplanet web server 4.1 sp5

iplanet iplanet web server 4.1 sp1

iplanet iplanet web server 4.1 sp10

iplanet iplanet web server 4.1 sp7

iplanet iplanet web server 4.1 sp9

iplanet iplanet web server 4.1 sp6

iplanet iplanet web server 4.1 sp3