Total vulnerabilities in the database
logwatch.pl in Logwatch 7.3.6 allows remote attackers to execute arbitrary commands via shell metacharacters in a log file name, as demonstrated via a crafted username to a Samba server.
Software | From | Fixed in |
---|---|---|
logwatch / logwatch | 7.3.6 | 7.3.6.x |