CyberSec.Space Logo
Back to CVE Browser

CVE-2007-6176

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.1180%
EPSS Percentile40.65th
PublishedNov 30, 2007
Last ModifiedApr 23, 2026

Vulnerability Description

kb_whois.cgi in K+B-Bestellsystem (aka KB-Bestellsystem) allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) domain or (2) tld parameter in a check_owner action.

Affected Platforms (CPE)

πŸ“¦
Amensa Soft

K\+b Bestellsystem

= 2.3.3

References & Advisories

Related Vulnerabilities