CVE-2005-2290: Critical severity wps Web Portal System vulnerability
Published Jul 17, 2005
·Updated
wpsshop.cgi in WPS Web Portal System 0.7.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) art and (2) cat variables.
Affected Software
2 affected components
wps Web Portal System=0.7.0
wps Web Portal System=0.7.0
Event History
Jul 17, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-2290?
CVE-2005-2290 is considered to have a high severity due to its ability to allow remote command execution.
2
How do I fix CVE-2005-2290?
To fix CVE-2005-2290, it is recommended to upgrade to a newer version of WPS Web Portal System that addresses this vulnerability.
3
What are the affected systems by CVE-2005-2290?
CVE-2005-2290 specifically affects WPS Web Portal System version 0.7.0.
4
What type of attack is possible with CVE-2005-2290?
CVE-2005-2290 allows remote attackers to execute arbitrary commands on the server via unsanitized input.
5
Is there a patch available for CVE-2005-2290?
There is no dedicated patch for CVE-2005-2290; the best solution is to upgrade to a secure version of the software.