Title : Albatross Parameters Handling Remote Command Execution Vulnerability VUPEN ID : VUPEN/ADV-2006-0196 CVE ID : CVE-2006-0044
Rated as : High Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-01-16
Technical Description
A vulnerability has been identified in Albatross, which could be exploited by remote attackers to execute arbitrary commands. This flaw is due to an input validation error in the "context.py" script that does not properly validate certain parameters, which could be exploited by remote attackers to execute arbitrary data as part of the template.