>> L-Soft LISTSERV Web Archive Interface Command Execution Vulnerability
Title : L-Soft LISTSERV Web Archive Interface Command Execution Vulnerability VUPEN ID : VUPEN/ADV-2006-0824 CVE ID : CVE-2006-1044
Rated as : High Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-03-05
Technical Description
A vulnerability has been identified in L-Soft LISTSERV, which could be exploited by remote attackers to compromise a vulnerable system. This flaw is due to buffer overflow errors in the WA CGI script, which could be exploited by remote unauthenticated attackers to execute arbitrary commands with the privileges of the web server. No further details have been disclosed.