Eval injection vulnerability in awstats.pl in AWStats 6.4 and earlier, when a URLPlugin is enabled, allows remote attackers to execute arbitrary Perl code via the HTTP Referrer, which is used in a $url parameter that is inserted into an eval function call.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Information
Published : 2005-08-15 04:00
Updated : 2018-10-03 21:30
NVD link : CVE-2005-1527
Mitre link : CVE-2005-1527
JSON object : View
Products Affected
awstats
- awstats
ubuntu
- ubuntu_linux
CWE
