E-Shopping Cart Arbitrary Command Execution (WebDiscount)

Summary
The eShop (WebDiscount) CGI is installed. A security problem in this CGI allows anyone to execute arbitrary commands with the privileges of the web server.
Solution
Contact the author for a patch. Additional information: http://www.securiteam.com/unixfocus/5JP0M005FU.html