Format string vulnerability in PerlRTE_example1.pl in WASD 7.1, 7.2.0 through 7.2.3, and 8.0.0 allows remote attackers to execute arbitrary commands or crash the server via format strings in the $name variable.
| Software | From | Fixed in |
|---|---|---|
| wasd / wasd_http_server | 8.0 | 8.0.x |
| wasd / wasd_http_server | 7.2.2 | 7.2.2.x |
| wasd / wasd_http_server | 7.2.3 | 7.2.3.x |
| wasd / wasd_http_server | 7.2 | 7.2.x |
| wasd / wasd_http_server | 7.2.1 | 7.2.1.x |
| wasd / wasd_http_server | 7.1 | 7.1.x |