Kootenay Web KW Whois 1.0 CGI program allows remote attackers to execute arbitrary commands via shell metacharacters in the "whois" parameter.
Info
Summary
Kootenay Web KW Whois 1.0 CGI program allows remote attackers to execute arbitrary commands via shell metacharacters in the "whois" parameter.
In-depth triage
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- http://archives.neohapsis.com/archives/bugtraq/2000-10/0419.html
- http://archives.neohapsis.com/archives/bugtraq/2000-10/0420.html Patch
- http://www.kootenayweb.bc.ca/scripts/whois.txt
- http://www.securityfocus.com/bid/1883 Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5438
- http://archives.neohapsis.com/archives/bugtraq/2000-10/0419.html
- http://archives.neohapsis.com/archives/bugtraq/2000-10/0420.html Patch
- http://www.kootenayweb.bc.ca/scripts/whois.txt
- http://www.securityfocus.com/bid/1883 Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5438
Timeline
- nvd_ingest NVD