Athena Web Registration - Remote Command Execution

EDB-ID:

23513




Platform:

PHP

Date:

2004-01-02


source: https://www.securityfocus.com/bid/9349/info

A problem has been reported in the handling of user-supplied input by the Athena Web Registration scripts. Because of this, it may be possible for an attacker to gain unauthorized access to a vulnerable system. 

http://www.example.com/athenareg.php?pass=%20;whoami