CVE-2006-2237

NONE EPSS 99.0%
Published May 8, 200620y ago · Modified Jun 16, 20262w ago
Find Similar
Published May 8, 2006 20y ago
Last Modified Jun 16, 2026 2w ago

Description

The web interface for AWStats 6.4 and 6.5, when statistics updates are enabled, allows remote attackers to execute arbitrary code via shell metacharacters in the migrate parameter.

Threat Intelligence

EPSS Exploit Probability
99.0% percentile
Exploit & Patch Status
No Known Exploit
Patch Available

Affected Products 2

VendorProductVersionRange
awstatsawstats6.4any
awstatsawstats6.5any

References 16

Remediation

  • secunia.com http://secunia.com/advisories/19969
    PatchVendor Advisory
  • osvdb.org http://www.osvdb.org/25284
    Patch