The dispallclosed2 function in dispallclosed.pl for multiple USANet Creations products, including (1) USANet Shopping Mall Software, (2) Domain Name Auction Software, (3) Standard Classified Ads Software, and (4) MakeBid Reverse Auction allows remote attackers to execute arbitrary code via shell metacharacters in the DISPCLOSED parameter.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2005-07-13T04:00:00

Updated: 2024-08-07T22:22:47.694Z

Reserved: 2005-07-13T00:00:00

Link: CVE-2005-2259

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2005-07-13T04:00:00.000

Modified: 2008-09-05T20:51:18.053

Link: CVE-2005-2259

cve-icon Redhat

No data.