CVE-2005-0363: High severity Awstats AWStats vulnerability
Published Feb 16, 2005
·Updated
awstats.pl in AWStats 4.0 and 6.2 allows remote attackers to execute arbitrary commands via shell metacharacters in the config parameter.
Affected Software
2 affected components
Awstats AWStats=4.0
Awstats AWStats=6.2
Remediation
Patch Available
Event History
Feb 16, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-0363?
CVE-2005-0363 is a high severity vulnerability that allows remote attackers to execute arbitrary commands.
2
How do I fix CVE-2005-0363?
To fix CVE-2005-0363, upgrade AWStats to a patched version beyond 6.2 or apply available security patches.
3
Which versions of AWStats are affected by CVE-2005-0363?
AWStats versions 4.0 and 6.2 are affected by CVE-2005-0363.
4
What types of attacks can be executed using CVE-2005-0363?
CVE-2005-0363 can be exploited to execute arbitrary commands on the affected server.
5
Is CVE-2005-0363 still a threat today?
While CVE-2005-0363 is over a decade old, systems running the affected versions without patches may still be at risk.