Total vulnerabilities in the database
Apache for Win32 before 1.3.24, and 2.0.x before 2.0.34-beta, allows remote attackers to execute arbitrary commands via shell metacharacters (a | pipe character) provided as arguments to batch (.bat) or .cmd scripts, which are sent unfiltered to the shell interpreter, typically cmd.exe.
Software | From | Fixed in |
---|---|---|
apache / http_server | - | 1.3.24 |
apache / http_server | 2.0.0 | 2.0.34 |