The ImageGalleryPlugin (ImageGalleryPlugin.pm) in Twiki allows remote attackers to execute arbitrary commands via certain commands that generate thumbnails.
Link | Tags |
---|---|
http://secunia.com/advisories/14384 | third party advisory patch vendor advisory |
http://marc.info/?l=bugtraq&m=110918725225288&w=2 | mailing list |
http://www.enyo.de/fw/security/notes/twiki-robustness.html | exploit vendor advisory |
http://static.enyo.de/fw/patches/twiki/imagegallery-robustness-20041128.diff | exploit vendor advisory |