CNCVE编号:CNCVE-20010756 CVE编号:CAN-2001-0756 安全级别:高 漏洞中文描述: VirtualCatalog (被错误地称为VirtualCart)中的CatalogMgr.pl允许远程攻击者通过模板参数来执行任意命令。 漏洞英文描述: CatalogMgr.pl in VirtualCatalog (incorrectly claimed to be in VirtualCart) allows remote attackers to execute arbitrary code via the template parameter. 漏洞参考: Reference: BUGTRAQ:20010607 cgisecurity.com Advisory #5 Reference: URL:http://archives.neohapsis.com/archives/bugtraq/2001-06/0067.html Reference: BUGTRAQ:20010611 re: Advisory #5 Corrections. Reference: URL:http://marc.theaimsgroup.com/?l=bugtraq& 系统类型:其他 漏洞类型:设计错误