Security Advisory
CVE-2005-2625
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Incomplete blacklist vulnerability in the checkBlacklist function in CPAINT allows remote attackers to execute arbitrary commands via the (1) ExecuteGlobal function or (2) GetRef statement, which is not included in the blacklist.