Where
-Infinity
0

Vendor Risk Score

See how awstats compares to other vendors in security performance

View Risk Score →

Awstats AWStatsCommand Injection, OS Command Injection

Risk 69
Severity
7.8
First published (updated )

Fedoraproject FedoraXSS

Risk 38
Severity
6.1
First published (updated )

Fedoraproject FedoraPath Traversal

Risk 27
Severity
5.3
First published (updated )

Awstats AWStatsInfoleak

Risk 27
Severity
5.3
First published (updated )

debian/awstatsPath Traversal

Risk 88
Severity
9.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Debian Debian LinuxPath Traversal

Risk 86
Severity
9.8
First published (updated )

Awstats AWStatsCode Injection

Risk 52
Severity
7.5
First published (updated )

Awstats AWStatsPath Traversal

Risk 40
Severity
6.4
First published (updated )

Awstats AWStatsCode Injection

Risk 52
Severity
7.5
First published (updated )

Awstats AWStatsInput Validation

Risk 35
Severity
5.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Awstats AWStatsXSS

Risk 23
Severity
4.3
First published (updated )

Awstats AWStatsXSS

Risk 19
Severity
4
First published (updated )

Awstats AWStatsXSS

Risk 22
Severity
4.3
First published (updated )

Awstats AWStatsXSS

Risk 15
Severity
2.6
First published (updated )

Awstats AWStatsawstats.pl in AWStats 6.5 build 1.857 and earlier allows remote attackers to obtain the installation…

Risk 26
Severity
5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Awstats AWStatsAWStats 6.5, and possibly other versions, allows remote authenticated users to execute arbitrary cod…

Risk 21
Severity
4
First published (updated )

Awstats AWStatsThe web interface for AWStats 6.4 and 6.5, when statistics updates are enabled, allows remote attack…

Risk 37
Severity
5.1
First published (updated )

Awstats AWStatsXSS

Risk 15
Severity
2.6
First published (updated )

Awstats AWStatsAWStats 6.4, and possibly earlier versions, allows remote attackers to obtain sensitive information …

Risk 26
Severity
5
First published (updated )

Awstats AWStatsCode Injection

Risk 26
Severity
5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Awstats AWStatsawstats.pl in AWStats 4.0 and 6.2 allows remote attackers to execute arbitrary commands via shell me…

Risk 52
Severity
7.5
First published (updated )

Awstats AWStatsawstats.pl in AWStats 6.3 and 6.4 allows remote attackers to read server web logs by setting the loa…

Risk 26
Severity
5
First published (updated )

Awstats AWStatsDirectory traversal vulnerability in awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to in…

Risk 52
Severity
7.5
First published (updated )

Awstats AWStatsawstats.pl in AWStats 6.3 and 6.4 allows remote attackers to obtain sensitive information by setting…

Risk 26
Severity
5
First published (updated )

Awstats AWStatsCode Injection

Risk 52
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Awstats AWStatsawstats.pl in AWStats 6.2 allows remote attackers to execute arbitrary commands via shell metacharac…

Risk 34
Severity
4.6
First published (updated )

Awstats AWStatsInput Validation

Risk 52
Severity
7.5
First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203