Filtered by vendor Awstats Subscriptions
Filtered by product Awstats Subscriptions
Total 25 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2010-4369 1 Awstats 1 Awstats 2011-02-23 N/A
Directory traversal vulnerability in AWStats before 7.0 allows remote attackers to have an unspecified impact via a crafted LoadPlugin directory.
CVE-2006-1945 1 Awstats 1 Awstats 2008-11-03 N/A
Cross-site scripting (XSS) vulnerability in awstats.pl in AWStats 6.5 and earlier allows remote attackers to inject arbitrary web script or HTML via the config parameter. NOTE: this might be the same core issue as CVE-2005-2732.
CVE-2005-0437 1 Awstats 1 Awstats 2008-09-05 N/A
Directory traversal vulnerability in awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to include arbitrary Perl modules via .. (dot dot) sequences in the loadplugin parameter.
CVE-2005-0362 1 Awstats 1 Awstats 2008-09-05 N/A
awstats.pl in AWStats 6.2 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) "pluginmode", (2) "loadplugin", or (3) "noloadplugin" parameters.
CVE-2005-0116 1 Awstats 1 Awstats 2008-09-05 N/A
AWStats 6.1, and other versions before 6.3, allows remote attackers to execute arbitrary commands via shell metacharacters in the configdir parameter to aswtats.pl.