Security Advisory

CVE-2007-6176

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2007-11-30 00:00:00
Last updated 2024-08-07 15:54:26
Assigner mitre
State PUBLISHED

Description

kb_whois.cgi in K+B-Bestellsystem (aka KB-Bestellsystem) allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) domain or (2) tld parameter in a check_owner action.