Directory traversal vulnerability in awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to include arbitrary Perl modules via .. (dot dot) sequences in the loadplugin parameter.
Link | Tags |
---|---|
http://secunia.com/advisories/14299 | exploit third party advisory patch vendor advisory |
http://www.securityfocus.com/archive/1/390368 | mailing list exploit vendor advisory |