|
|
| |
|
| |
mod_tcl: format string vulnerability
| Package(s): | mod_tcl |
CVE #(s): | CVE-2006-4154
|
| Created: | October 24, 2006 |
Updated: | October 25, 2006 |
| Description: |
Sparfell discovered format string errors in calls to the set_var
function in tcl_cmds.c and tcl_core.c. A remote attacker could exploit the
vulnerability to execute arbitrary code with the rights of the user running
the Apache server. |
| Alerts: |
|
( Log in to post comments)
|
|
|