积极预防 及时发现
快速响应 力保恢复
nph-maillist.pl 允许远程攻击者通过EMAIL地址中的shell元字符(“`”)来执行...
发布时间:2001-07-02 信息来源:管理员

CNCVE编号:CNCVE-20010400 CVE编号:CAN-2001-0400 安全级别:高 漏洞中文描述: nph-maillist.pl 允许远程攻击者通过EMAIL地址中的shell元字符(“`”)来执行任意命令。 漏洞英文描述: nph-maillist.pl allows remote attackers to execute arbitrary commands via shell metacharacters ("`") in the email address. 漏洞参考: Reference: BUGTRAQ:20010410 CGI - nph-maillist.pl vulnerability... Reference: URL:http://www.securityfocus.com/archive/1/175506 Reference: BID:2563 Reference: URL:http://www.securityfocus.com/bid/2563 系统类型: Unix/Linux Win95/98/ME Win2000/NT Apple 漏洞类型:输入有效性检查错误