login.gas.bat and other CGI scripts in Entrust getAccess allow remote attackers to execute Java programs, and possibly arbitrary commands, by specifying an alternate -classpath argument.
Link | Tags |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2001-07/0662.html | mailing list exploit vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/6915 | vdb entry |