7.5
CVSSv2

CVE-2003-0243

Published: 27/05/2003 Updated: 10/09/2008
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 760
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Happycgi.com Happymall 4.3 and 4.4 allows remote malicious users to execute arbitrary commands via shell metacharacters in the file parameter for the (1) normal_html.cgi or (2) member_html.cgi scripts.

Vulnerable Product Search on Vulmon Subscribe to Product

happycgi happymall 4.4

happycgi happymall 4.3

Exploits

source: wwwsecurityfocuscom/bid/7529/info It has been reported that a problem in the HappyMall E-Commerce software package could allow an attacker to pass arbitrary commands through the normal_htmlcgi script This could lead to attacks against system resources ########################################################## # HappyMail expl ...
source: wwwsecurityfocuscom/bid/7530/info It has been reported that a problem in the HappyMall E-Commerce software package could allow an attacker to pass arbitrary commands through the member_htmlcgi script This could lead to attacks against system resources ########################################################## # HappyMall expl ...