awstats.pl in AWStats 6.3 and 6.4 allows remote malicious users to read server web logs by setting the loadplugin and pluginmode parameters to rawlog.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
awstats awstats 6.3 |
||
awstats awstats 6.4 |