Multiple CRLF injection vulnerabilities in callboth.php in AsteriDex 3.0 and earlier allow remote attackers to inject arbitrary shell commands via the (1) IN and (2) OUT parameters.
References
Configurations
History
21 Nov 2024, 00:33
Type | Values Removed | Values Added |
---|---|---|
References | () http://bestof.nerdvittles.com/applications/asteridex/ - | |
References | () http://osvdb.org/37846 - | |
References | () http://secunia.com/advisories/25965 - Vendor Advisory | |
References | () http://securityreason.com/securityalert/2863 - | |
References | () http://www.hoku.co.uk/advisories/asteridex.txt - | |
References | () http://www.securityfocus.com/archive/1/472907/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/24781 - Exploit, Patch | |
References | () http://www.vupen.com/english/advisories/2007/2446 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/35270 - | |
References | () https://www.exploit-db.com/exploits/4151 - |
Information
Published : 2007-07-09 16:30
Updated : 2024-11-21 00:33
NVD link : CVE-2007-3621
Mitre link : CVE-2007-3621
CVE.ORG link : CVE-2007-3621
JSON object : View
Products Affected
asteridex
- asteridex
CWE