Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2003-1538

Overview

Vulnerability Score 6.4 6.4
CVE Id CVE-2003-1538
Last Modified 05 Sep 2008 04:37:11
Published 31 Dec 2003 12:00:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2003-1538

Summary

susehelp in SuSE Linux 8.1, Enterprise Server 8, Office Server, and Openexchange Server 4 does not properly filter shell metacharacters, which allows remote attackers to execute arbitrary commands via CGI queries.

Vulnerable Systems

Operating System

  • Suse Linux 8

  • Suse Linux 8.1

  • Suse Office Server

Application

  • Suse Linux Openexchange Server 4.0


References

SECTRACK - 1005954

SECUNIA - 7906

SUSE - SUSE-SA:2003:005


Last Updated: 27 May 2016 10:38:24