Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Eval injection vulnerability in awstats.pl in AWStats 6.4 and earlier, when a URLPlugin is enabled, allows remote attackers to execute arbitrary Perl code via the HTTP Referrer, which is used in a $url parameter that is inserted into an eval function call.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
AWStats 'awstats.pl' Eval注入漏洞
Vulnerability Description
AWStats 6.4及早期版本中的awstats.pl存在Eval注入漏洞。这使得,当启用URLPlugin时,远程gonjizhe 可以借助于HTTP Referrer执行任意的Perl代码。所执行的Perl代码应用于$url参数中,该参数插入在eval函数调用中。
CVSS Information
N/A
Vulnerability Type
N/A