{"id":"CVE-2005-0116","details":"AWStats 6.1, and other versions before 6.3, allows remote attackers to execute arbitrary commands via shell metacharacters in the configdir parameter to aswtats.pl.","modified":"2026-04-10T03:36:49.121741Z","published":"2005-01-18T05:00:00Z","references":[{"type":"ADVISORY","url":"http://awstats.sourceforge.net/docs/awstats_changelog.txt"},{"type":"ADVISORY","url":"http://secunia.com/advisories/13893/"},{"type":"ADVISORY","url":"http://www.idefense.com/application/poi/display?id=185&type=vulnerabilities&flashstatus=false"},{"type":"ADVISORY","url":"http://www.kb.cert.org/vuls/id/272296"},{"type":"EVIDENCE","url":"http://www.idefense.com/application/poi/display?id=185&type=vulnerabilities&flashstatus=false"},{"type":"FIX","url":"http://awstats.sourceforge.net/docs/awstats_changelog.txt"},{"type":"FIX","url":"http://secunia.com/advisories/13893/"},{"type":"FIX","url":"http://www.idefense.com/application/poi/display?id=185&type=vulnerabilities&flashstatus=false"},{"type":"FIX","url":"http://www.kb.cert.org/vuls/id/272296"},{"type":"WEB","url":"http://packetstormsecurity.org/0501-exploits/AWStatsVulnAnalysis.pdf"},{"type":"WEB","url":"http://www.kb.cert.org/vuls/id/272296"},{"type":"WEB","url":"http://www.osvdb.org/13002"},{"type":"WEB","url":"http://www.securityfocus.com/bid/12298"}],"schema_version":"1.7.5"}