First published: Tue May 17 2005(Updated: )
apage.cgi in WebAPP 0.9.9.2.1, and possibly earlier versions, allows remote attackers to execute arbitrary commands via shell metacharacters in the f parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
WebAPP | =0.9.9 | |
WebAPP | =0.9.9.2 | |
WebAPP | =0.9.9.2.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-1628 is considered critical due to its ability to allow remote command execution.
To fix CVE-2005-1628, update WebAPP to the latest version available that addresses this vulnerability.
CVE-2005-1628 affects WebAPP versions 0.9.9.2.1 and earlier.
CVE-2005-1628 allows attackers to execute arbitrary commands on the server due to improper handling of shell metacharacters.
Yes, CVE-2005-1628 can be exploited remotely by attackers targeting the vulnerable parameter.