Binary decoding feature of slrn 0.9 and earlier allows remote attackers to execute commands via shell scripts that are inserted into a news post.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/7166 | vdb entry |
http://www.debian.org/security/2001/dsa-078 | patch vendor advisory |
http://www.securityfocus.com/bid/3364 | vdb entry patch vendor advisory |