PT-2001-1334 · Unknown · Bsguest.Cgi

Published

2001-02-12

·

Updated

2017-10-10

·

CVE-2001-0099

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: bsguest.cgi (affected versions not specified)
Description: The bsguest.cgi guestbook script has an issue that allows remote attackers to execute arbitrary commands. This is possible due to the script's failure to properly handle shell metacharacters in the email address.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2001-0099

Affected Products

Bsguest.Cgi