PT-2007-4693 · Webapp · Webapp

Publicado

2007-06-26

·

Atualizado

2008-11-15

·

CVE-2007-3422

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions WebAPP versions prior to 0.9.9.7
Description The issue concerns the getcgi function in cgi-bin/cgi-lib/subs.pl, which attempts to parse query strings containing non-printing characters, certain uncommon printing characters in URLs, or invalid URL encoding sequences. This has an unknown impact and can be exploited remotely.
Recommendations For versions prior to 0.9.9.7, update to version 0.9.9.7 or later to resolve the issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2007-3422

Produtos afetados

Webapp