CVE-1999-1278

nlog CGI scripts do not properly filter shell metacharacters from the IP address argument, which could allow remote attackers to execute certain commands via (1) nlog-smb.pl or (2) rpc-nlog.pl.
Configurations

Configuration 1 (hide)

cpe:2.3:a:nlog:nlog:*:*:*:*:*:*:*:*

History

20 Nov 2024, 23:30

Type Values Removed Values Added
References () http://marc.info/?l=bugtraq&m=91470326629357&w=2 - () http://marc.info/?l=bugtraq&m=91470326629357&w=2 -
References () http://marc.info/?l=bugtraq&m=91471400632145&w=2 - () http://marc.info/?l=bugtraq&m=91471400632145&w=2 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/1549 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/1549 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/1550 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/1550 -

Information

Published : 1998-12-25 05:00

Updated : 2025-04-03 01:03


NVD link : CVE-1999-1278

Mitre link : CVE-1999-1278

CVE.ORG link : CVE-1999-1278


JSON object : View

Products Affected

nlog

  • nlog