CVE-2005-0436
AWStats 6.3-6.4 - Remote Code Execution via PluginMode Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-0436. PoCs published by GHC.
AI-analyzed exploit summary This exploit targets a vulnerability in AWStats (CVE-2005-0436) by sending HTTP requests with malicious parameters to execute arbitrary Perl code or leak sensitive information. The script demonstrates a denial-of-service (DoS) attack by repeatedly sending requests with random parameters.
Description
Direct code injection vulnerability in awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to execute portions of Perl code via the PluginMode parameter.
Exploits (1)
This exploit targets a vulnerability in AWStats (CVE-2005-0436) by sending HTTP requests with malicious parameters to execute arbitrary Perl code or leak sensitive information. The script demonstrates a denial-of-service (DoS) attack by repeatedly sending requests with random parameters.