CVE-2005-0437
EPSS 0.60%
Description
Directory traversal vulnerability in awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to include arbitrary Perl modules via .. (dot dot) sequences in the loadplugin parameter.
How to fix CVE-2005-0437
To remediate CVE-2005-0437, upgrade the affected package to a fixed version below.
- Debian/awstats—upgrade to 6.3-1 or later
Is CVE-2005-0437 being exploited?
Low — EPSS is 0.6%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0, < 6.3-1