Eval injection vulnerability in awstats.pl in AWStats 6.4 and earlier, when a URLPlugin is enabled, allows remote attackers to execute arbitrary Perl code via the HTTP Referrer, which is used in a $url parameter that is inserted into an eval function call.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Information
Published : 2005-08-14 21:00
Updated : 2018-10-03 14:30
NVD link : CVE-2005-1527
Mitre link : CVE-2005-1527
JSON object : View
CWE
Products Affected
ubuntu
- ubuntu_linux
awstats
- awstats