1 results (0.003 seconds)

CVSS: 7.5EPSS: 1%CPEs: 3EXPL: 0

Sun Java Active Server Pages (ASP) Server before 4.0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in HTTP requests to unspecified ASP applications. Sun Java Active Server Pages (ASP) Server anterior a 4.0.3, permite a atacantes remotos ejecutar comandos de su elección a través de metacaractéres en la consola en una petición HTTP hacia una aplicación ASP sin especificar. • http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=709 http://secunia.com/advisories/30523 http://sunsolve.sun.com/search/document.do?assetkey=1-66-238184-1 http://www.securitytracker.com/id?1020190 http://www.vupen.com/english/advisories/2008/1742/references https://exchange.xforce.ibmcloud.com/vulnerabilities/42829 • CWE-20: Improper Input Validation •