Vulnerabilities > Awstats > Medium

DATE CVE VULNERABILITY TITLE RISK
2005-05-02 CVE-2005-0438 Information Disclosure vulnerability in Awstats 6.3/6.4
awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to obtain sensitive information by setting the debug parameter.
network
low complexity
awstats
5.0
2005-05-02 CVE-2005-0435 Remote Security vulnerability in Awstats 6.3/6.4
awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to read server web logs by setting the loadplugin and pluginmode parameters to rawlog.
network
low complexity
awstats
5.0
2005-02-09 CVE-2005-0362 Local Security vulnerability in AWStats
awstats.pl in AWStats 6.2 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) "pluginmode", (2) "loadplugin", or (3) "noloadplugin" parameters.
local
low complexity
awstats
4.6