Directory traversal vulnerability in awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to include arbitrary Perl modules via .. (dot dot) sequences in the loadplugin parameter.
| Software | From | Fixed in |
|---|---|---|
| awstats / awstats | 6.3 | 6.3.x |
| awstats / awstats | 6.4 | 6.4.x |