CSGuestbook Remote Command Execution...

- AV AC AU C I A
发布: 2002-04-08
修订: 2025-04-13

csGuestbook is web guestbook software. It will run on most Unix and Linux variants. csGuestbook is prone to an issue which may enable an attacker to execute Perl code with the privileges of the webserver process. For exploitation to be successful, the attacker must pass properly URL encoded Perl code in CGI parameters via a web request. For example: http://host/cgi-bin/csGuestbook.cgi?command=savesetup&setup=PERL_CODE_HERE

0%
暂无可用Exp或PoC
当前有0条受影响产品信息