First published: Fri Jun 10 2005(Updated: )
The eTrace_validaddr function in eTrace plugin for e107 portal allows remote attackers to execute arbitrary commands via shell metacharacters after a valid argument to the etrace_host parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
e107 CMS | =1.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-1966 is considered a high severity vulnerability due to the potential for remote command execution.
To mitigate CVE-2005-1966, upgrade the e107 CMS to a patched version that addresses this vulnerability.
CVE-2005-1966 affects e107 CMS version 1.0.1.
CVE-2005-1966 allows remote attackers to execute arbitrary commands on the server by exploiting shell metacharacters.
Yes, there are known exploit methods that leverage this vulnerability to execute arbitrary commands on affected servers.