Nessus Plugin #10769

Plugin Index

Note: This file has been created from a downloaded version of the Nessus Plugins from http://www.nessus.org/. Therefore, the information here can be outdated.

Checks for listrec.pl

Family:
CGI abuses
Category:
infos
Copyright:
This script is Copyright (C) 2001 Matt Moore
Summary:
Checks for the listrec.pl CGI
Version:
$Revision: 1.12 $
Cve_id:
CAN-2001-0997
Bugtraq_id:
-
Xrefs:
-
Description:
The 'listrec.pl' cgi is installed. This CGI has
a security flaw that lets an attacker execute arbitrary
commands on the remote server, usually with the privileges of the web server.

Solution: Remove it from /cgi-bin/common/.

Risk factor : High

References:
www.textor.com/index.html (vendor)
www.securitytracker.com/alerts/2001/Sep/1002404.html (advisory)
Generiert am 27.04.2005 um 18:49:54 Uhr.