Page 2 of 12 results (0.002 seconds)

CVSS: 9.8EPSS: 38%CPEs: 1EXPL: 3

31 Dec 2003 — Multiple buffer overflows in H-Sphere WebShell 2.3 allow remote attackers to execute arbitrary code via (1) a long URL content type in CGI::readFile, (2) a long path in diskusage, and (3) a long fname in flist. • https://www.exploit-db.com/exploits/22128 •

CVSS: 9.8EPSS: 1%CPEs: 1EXPL: 0

31 Dec 2003 — H-Sphere WebShell 2.3 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) mode and (2) zipfile parameters in a URL request. • http://psoft.net/misc/webshell_patch.html •