mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-31 01:49:30 +02:00
896 B
896 B
CVE-2009-0545
Description
cgi-bin/kerbynet in ZeroShell 1.0beta11 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the type parameter in a NoAuthREQ x509List action.
POC
Reference
- http://www.ikkisoft.com/stuff/LC-2009-01.txt
- http://www.ikkisoft.com/stuff/LC-2009-01.txt
- https://www.exploit-db.com/exploits/8023
- https://www.exploit-db.com/exploits/8023