CyberSec.Space Logo
CVEブラウザに戻る

CVE-2007-6176

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.1180%
EPSS Percentile40.65th
Published2007年11月30日
Last Modified2026年4月23日

Vulnerability Description

kb_whois.cgi in K+B-Bestellsystem (aka KB-Bestellsystem) allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) domain or (2) tld parameter in a check_owner action.

Affected Platforms (CPE)

📦
Amensa Soft

K\+b Bestellsystem

= 2.3.3

References & Advisories

関連する脆弱性情報