Summary
The script i-mall.cgi is installed. Some versions of this script are vulnerable to remote command exacution flaw, due to insuficient user input sanitization. A malicious user can pass arbitrary shell commands on the remote server through this script.
Solution
None at this time.
Severity
Classification
-
CVE CVE-2004-2275 -
CVSS Base Score: 10.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
Related Vulnerabilities