CVE-2005-1527

Publication date 15 August 2005

Last updated 24 July 2024


Ubuntu priority

Eval injection vulnerability in awstats.pl in AWStats 6.4 and earlier, when a URLPlugin is enabled, allows remote attackers to execute arbitrary Perl code via the HTTP Referrer, which is used in a $url parameter that is inserted into an eval function call.

Status

Package Ubuntu Release Status
awstats 7.04 feisty
Not affected
6.10 edgy
Not affected
6.06 LTS dapper
Not affected

References

Related Ubuntu Security Notices (USN)

    • USN-167-1
    • AWStats vulnerability
    • 12 August 2005

Other references