VYPR
Unrated severityNVD Advisory· Published May 2, 2005· Updated Apr 16, 2026

CVE-2005-0437

CVE-2005-0437

Description

Directory traversal vulnerability in awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to include arbitrary Perl modules via .. (dot dot) sequences in the loadplugin parameter.

Affected products

2
  • AWStats/Awstats2 versions
    cpe:2.3:a:awstats:awstats:6.3:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:awstats:awstats:6.3:*:*:*:*:*:*:*
    • cpe:2.3:a:awstats:awstats:6.4:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.