oss-sec mailing list archives

CVE request: awstats


From: Craig <craig () haquarter de>
Date: Sun, 22 Nov 2009 02:31:56 +0100

Hi,

I think there isn't a CVE for this issues - which was fixed in 6.95 -
yet (quote from http://awstats.sourceforge.net/docs/awstats_changelog.txt):

- Fix security in awredir.pl script by adding a security key required by
  default.
- Enhance security of parameter sanitizing function


best regards,

Craig


Current thread: