CVE
- Id
- 1160
- CVE No.
- CVE-1999-1180
- Status
- Candidate
- Description
- O"Reilly WebSite 1.1e and Website Pro 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in an argument to (1) args.cmd or (2) args.bat.
- Phase
- Proposed (20010912)
- Votes
- ACCEPT(1) Wall | MODIFY(1) Frech | NOOP(3) Christey, Cole, Foat
- Comments
- Christey> DELREF MISC:http://oliver.efri.hr/~crv/security/bugs/NT/buffer.html | ADDREF MISC:http://focus.silversand.net/vulner/allbug/buffer.html | Frech> XF:website-pro-args-commands(7529)