Nessus Plugin #10076
Plugin Index
Note: This file has been created from a
downloaded version of the Nessus Plugins
from
http://www.nessus.org/.
Therefore, the information here can be outdated.
formmail.pl
- Family:
- CGI abuses
- Category:
- infos
- Copyright:
- This script is Copyright (C) 1999 Mathieu Perrin
- Summary:
- Checks for the presence of /cgi-bin/formmail.pl
- Version:
- $Revision: 1.18 $
- Cve_id:
- CVE-1999-0172
- Bugtraq_id:
- 2079
- Xrefs:
- -
- Description:
- The 'formmail.pl' is installed. This CGI has
a well known security flaw that lets anyone execute arbitrary
commands with the privileges of the http daemon (root or nobody).
Solution : remove it from /cgi-bin.
Risk factor : High
Generiert am 27.04.2005 um 18:49:54 Uhr.