Blahz-DNS 0.2 and earlier allows remote attackers to bypass authentication and modify configuration by directly requesting CGI programs such as dostuff.php instead of going through the login screen.
Link | Tags |
---|---|
http://www.osvdb.org/5178 | vdb entry |
http://sourceforge.net/project/shownotes.php?release_id=87004 | |
http://www.iss.net/security_center/static/8951.php | vdb entry patch vendor advisory |
http://archives.neohapsis.com/archives/bugtraq/2002-04/0395.html | mailing list patch vendor advisory |
http://www.securityfocus.com/bid/4618 | exploit vdb entry patch vendor advisory |