PT-2001-2054 · Php Nuke · Network Tools

Publicado

2001-11-16

·

Atualizado

2019-07-01

·

CVE-2001-0899

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Network Tools version 0.2 for PHP-Nuke
Description The issue allows remote attackers to execute commands on the server. This is achieved by injecting shell metacharacters in the hostinput variable.
Recommendations For Network Tools version 0.2, consider restricting or sanitizing input to the hostinput variable to prevent command execution until a patch is available.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2001-0899

Produtos afetados

Network Tools