Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

Debian: New diatheke packages fix arbirary shell command execution

BugsAlert Home > Debian: New diatheke packages fix arbirary shell command execution
 
 

LinuxSecurity.com: Dan Dennison discovered that Diatheke, a CGI program to make a bible website, performs insufficient sanitising of a parameter, allowing a remote attacker to execute arbitrary shell commands as the web server user.




Original Source: http://www.linuxsecurity.com/content/view/134800?rdf

Learn more about Debian: New diatheke packages fix arbirary shell command execution
 
Tags: debian diatheke packages fix arbirary shell command
 execution

Related Items

      neat script

      CVE-2008-5114 (java_system_identity_manager)

      CVE-2007-6342 (Apache_AuthCAS)

      CVE-2008-0167 (GForge)

      Mosaic Commerce "cid" SQL Injection Vulnerability

      Setting Up Your Own Certificate Authority with GnoMint

      Microsoft Windows ANI header stack buffer overflow

 

Pixel