CVE-2010-4367 | awstats up to 6.95 Configuration File awstats.cgi configdir code injection (EDB-35035 / Nessus ID 51930)
A vulnerability was found in awstats and classified as critical. Affected by this issue is some unknown functionality of the file awstats.cgi of the component Configuration File. The manipulation of the argument configdir leads to code injection.
This vulnerability is handled as CVE-2010-4367. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.