LedgerSMB Remote Perl Command Execution and Authentication Bypass … - FrSIRT
LedgerSMB Remote Perl Command Execution and Authentication Bypass … - FrSIRT
LedgerSMB Remote Perl Command Execution and Authentication Bypass …FrSIRT, France - Jan 30, 2007… not validate the “script” parameter, which could be exploited by remote attackers to execute arbitrary Perl code with the privileges of the web server. …