CVE
- Id
- 4147
- CVE No.
- CVE-2001-1343
- Status
- Candidate
- Description
- ws_mail.cgi in WebStore 400/400CS 4.14 allows remote authenticated WebStore administrators to execute arbitrary code via shell metacharacters in the kill parameter.
- Phase
- Proposed (20020502)
- Votes
- ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall
- Comments
- Green> As this vulnerability requires the exploiter to have an authenticated administrative login, is it an oxymoron?