Description
The eTrace_validaddr function in eTrace plugin for e107 portal allows remote attackers to execute arbitrary commands via shell metacharacters after a valid argument to the etrace_host parameter.
Remediation
References
Related Vulnerabilities
WordPress Plugin Nooz Cross-Site Scripting (1.6.0)
MySQL Other Vulnerability (CVE-2005-2572)
WordPress Plugin Haiku minimalist audio player Cross-Site Scripting (1.0.0)
PostgreSQL Other Vulnerability (CVE-2006-2313)
WordPress Plugin InstaWP Connect-1-click WP Staging & Migration Arbitrary File Upload (0.1.0.22)