7.5
CVSSv2

CVE-2002-2420

Published: 31/12/2002 Updated: 05/09/2008
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

site_searcher.cgi in Super Site Searcher allows remote malicious users to execute arbitrary commands via shell metacharacters in the page parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

independent solution simple site searcher

independent solution super site searcher

Exploits

source: wwwsecurityfocuscom/bid/5605/info Super Site Searcher is prone to remote command execution Shell metacharacters are not adequately filtered from query string parameters in a request to the vulnerable search engine script The parameters are then used in a function which passes commands directly through the shell A remote attack ...

Github Repositories

The New Exploit there no available on metasploit framework !

CVE-2002-2420 The New Exploit there no available on metasploit framework !