1 results (0.004 seconds)

CVSS: 9.8EPSS: 1%CPEs: 4EXPL: 1

16 Apr 2005 — Format string vulnerability in the my_xlog function in lib.c for Oops! Proxy Server 1.5.23 and earlier, as called by the auth functions in the passwd_mysql and passwd_pgsql modules, may allow attackers to execute arbitrary code via a URL. • http://rst.void.ru/papers/advisory24.txt •