CVE-2007-3011
Fujitsu-Siemens Computers ServerView <4.50.09 - Command Injection
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-3011. PoCs published by RedTeam Pentesting GmbH.
AI-analyzed exploit summary This exploit demonstrates a command injection vulnerability in Fujitsu ServerView via the 'Servername' parameter in the 'DBAsciiAccess' CGI script. The vulnerability allows remote command execution by appending commands to the 'Servername' parameter, which are then executed on the server.
Description
The DBAsciiAccess CGI Script in the web interface in Fujitsu-Siemens Computers ServerView before 4.50.09 allows remote attackers to execute arbitrary commands via shell metacharacters in the Servername subparameter of the ParameterList parameter.
Exploits (1)
This exploit demonstrates a command injection vulnerability in Fujitsu ServerView via the 'Servername' parameter in the 'DBAsciiAccess' CGI script. The vulnerability allows remote command execution by appending commands to the 'Servername' parameter, which are then executed on the server.