CVE-2013-7418
02.01.2015, 22:59
cgi-bin/iptablesgui.cgi in IPCop (aka IPCop Firewall) before 2.1.5 allows remote authenticated users to execute arbitrary code via shell metacharacters in the TABLE parameter. NOTE: this can be exploited remotely by leveraging a separate cross-site scripting (XSS) vulnerability.
Vendor | Product | Version |
---|---|---|
ipcop | ipcop | 𝑥 ≤ 2.1.4 |
𝑥
= Vulnerable software versions
References