aspell_setup.php in the SpellChecker plugin in DTLink AreaEdit before 0.4.3 allows remote attackers to execute arbitrary commands via shell metacharacters in the dictionary parameter (aka the lang variable).
References
Configurations
History
07 Nov 2023, 01:57
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Information
Published : 2005-08-23 04:00
Updated : 2024-02-28 10:42
NVD link : CVE-2005-2682
Mitre link : CVE-2005-2682
CVE.ORG link : CVE-2005-2682
JSON object : View
Products Affected
dtlink
- areaedit
CWE