exploit-db-mirror/platforms/linux/remote/30728.txt
Offensive Security fc1d5b0b00 Updated 01_16_2014
2014-01-16 04:20:47 +00:00

10 lines
555 B
Text
Executable file

source: www.securityfocus.com/bid/26273/info
Yarssr is prone to a remote code-injection vulnerability because it fails to properly sanitize user-supplied input.
An attacker can exploit this issue to inject and execute arbitrary malicious Perl code with the privileges of the user running the application. Successful exploits can compromise the application and possibly the underlying computer; other attacks are also possible.
Yarssr 0.2.2 is vulnerable; other versions may also be affected.
http://www.exploit-db.com/sploits/30728.rss