CVE-2007-6459

Anon Proxy Server 0.100, and probably 0.101, allows remote attackers to execute arbitrary commands via shell metacharacters in (1) the host parameter to diagdns.php, and (2) the host parameter and possibly (3) the port parameter to diagconnect.php, a different vulnerability than CVE-2007-6460.
Configurations

Configuration 1 (hide)

cpe:2.3:a:anon_proxy_server:anon_proxy_server:0.100:*:*:*:*:*:*:*

History

No history.

Information

Published : 2007-12-20 00:46

Updated : 2024-02-04 17:13


NVD link : CVE-2007-6459

Mitre link : CVE-2007-6459

CVE.ORG link : CVE-2007-6459


JSON object : View

Products Affected

anon_proxy_server

  • anon_proxy_server
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')