|
Family: CGI abuses --> Category: attack
GOsa code injection Vulnerability Scan
Vulnerability Scan Summary Searches for the existence of remotehtmlview.php
Detailed Explanation for this Vulnerability Test
It is possible to make the remote host include php files hosted
on a third party server using GOsa.
A possible hacker may use this flaw to inject arbitrary code in the remote
host and gain a shell with the rights of the web server.
Solution : Upgrade to GOsa 1.0.1 or newer
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.
|