CVE-2002-2113
AGH HTMLsearch 1.0 - Remote Command Execution via Template Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2002-2113. PoCs published by Aleksey Sintsov.
AI-analyzed exploit summary The exploit demonstrates a command injection vulnerability in AHG Search Engine's search.cgi script due to insufficient input sanitization. An attacker can execute arbitrary commands by injecting semi-colon or pipe characters in the 'template' parameter.
Description
search.cgi in AGH HTMLsearch 1.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the template parameter.
Exploits (1)
The exploit demonstrates a command injection vulnerability in AHG Search Engine's search.cgi script due to insufficient input sanitization. An attacker can execute arbitrary commands by injecting semi-colon or pipe characters in the 'template' parameter.