10
CVSSv2

CVE-2002-1993

Published: 31/12/2002 Updated: 05/09/2008
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

webbbs_post.pl in WebBBS 4 and 5.0 allows remote malicious users to execute arbitrary commands via shell metacharacters in the followup parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

affordable web space design affordable web space design webbbs 4.10

affordable web space design affordable web space design webbbs 4.11

affordable web space design affordable web space design webbbs 4.12

affordable web space design affordable web space design webbbs 4.2

affordable web space design affordable web space design webbbs 4.32

affordable web space design affordable web space design webbbs 4.33

affordable web space design affordable web space design webbbs 5.0

affordable web space design affordable web space design webbbs 4.1

affordable web space design affordable web space design webbbs 4.20

affordable web space design affordable web space design webbbs 4.22

affordable web space design affordable web space design webbbs 4.31

affordable web space design affordable web space design webbbs 4.0

affordable web space design affordable web space design webbbs 4.21

affordable web space design affordable web space design webbbs 4.30

Exploits

source: wwwsecurityfocuscom/bid/5048/info WebBBS does not sufficiently filter shell metacharacters from CGI parameters As a result, remote attackers may execute arbitrary commands on the underlying shell of the system hosting the vulnerable software Remote attackers may gain local, interactive access to the host with the privileges of ...