CVE-2004-2732

Netbilling - OS Command Injection

Title source: rule

Description

nbmember.cgi in Netbilling 2.0 allows remote attackers to obtain sensitive information via the cmd=test option, which can be leveraged to determine the access key.

Exploits (1)

exploitdb WRITEUP VERIFIED
by ls · textwebappscgi
https://www.exploit-db.com/exploits/24700

Scores

EPSS 0.0246
EPSS Percentile 85.0%

Classification

CWE
CWE-78
Status draft

Affected Products (1)

netbilling/netbilling

Timeline

Published Dec 31, 2004
Tracked Since Feb 18, 2026