Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2002-0436

Overview

Vulnerability Score 10.0 10.0
CVE Id CVE-2002-0436
Last Modified 05 Sep 2008 04:28:01
Published 26 Jul 2002 12:00:00
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2002-0436

Summary

sscd_suncourier.pl CGI script in the Sun Sunsolve CD pack allows remote attackers to execute arbitrary commands via shell metacharacters in the email address parameter.

Vulnerable Systems

Operating System

  • Sun Solaris 7.0

  • Sun Solaris 8.0


References

BID - 4269

BUGTRAQ - 20020311 SunSolve CD cgi scripts...

XF - sunsolve-cd-command-execution(8435)


Last Updated: 27 May 2016 10:36:54