Skip to main content
定价企业版
首页/漏洞/CVE-2007-6515

CVE-2007-6515

NONE

support/dispatch.cgi in SiteScape Forum allows remote attackers to execute arbitrary TCL code via code separator characters in the query string.

发布于: 12/21/2007更新于: 4/9/2025
在NVD查看在MITRE查看

描述

support/dispatch.cgi in SiteScape Forum allows remote attackers to execute arbitrary TCL code via code separator characters in the query string.

AI分析AI驱动

受影响产品

sitescapesitescape_forum_st
sitescapesitescape_forum_zx

可用漏洞利用 (2)

EDB-15987
webappscgiVERIFIED

SiteScape Enterprise Forum 7 - TCL Injection

CVE-2007-6515
Spencer McIntyre1/13/2011
EDB-30919
webappscgiVERIFIED

SiteScape Forum - 'dispatch.cgi' Tcl Command Injection

CVE-2007-6515
niekt012/20/2007

参考资料

  • http://osvdb.org/39875
  • http://secunia.com/advisories/28182
    Vendor Advisory
  • http://securityreason.com/securityalert/3480
  • http://www.exploit-db.com/exploits/15987
  • http://www.securityfocus.com/archive/1/485398/100/0/threaded
  • http://www.securityfocus.com/bid/26963
    ExploitPatch
  • https://exchange.xforce.ibmcloud.com/vulnerabilities/39182
  • http://osvdb.org/39875
  • http://secunia.com/advisories/28182
    Vendor Advisory
  • http://securityreason.com/securityalert/3480
  • http://www.exploit-db.com/exploits/15987
  • http://www.securityfocus.com/archive/1/485398/100/0/threaded
  • http://www.securityfocus.com/bid/26963
    ExploitPatch
  • https://exchange.xforce.ibmcloud.com/vulnerabilities/39182

弱点类型

CWE-94

快速操作

在Exploit-DB搜索在Google搜索PoC在GitHub搜索