Awstats Configuration File Remote Arbitrary Command Execution

  Bookmark
 and Share

AWstats is an application that provides statistics on server traffic. Awstats is exposed to an arbitrary command execution issue due to a failure in the application to properly handle "" when specifying a configuration file directory. Awstats version 7.0 is affected.

Ref: http://awstats.sourceforge.net/docs/awstats_changelog.txt

10.50.16 - CVE: Not Available
Platform: Cross Platform