Vulnerabilities > Amensa Soft > K B Bestellsystem > Critical

DATE CVE VULNERABILITY TITLE RISK
2007-11-30 CVE-2007-6176 Improper Input Validation vulnerability in Amensa-Soft K+B-Bestellsystem 2.3.3
kb_whois.cgi in K+B-Bestellsystem (aka KB-Bestellsystem) allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) domain or (2) tld parameter in a check_owner action.
network
low complexity
amensa-soft CWE-20
critical
10.0