Back to Database
Status published
Medium
CVE-2010-4369
Directory traversal vulnerability in AWStats before 7.0 allows remote attackers...
Vulnerability Description
Directory traversal vulnerability in AWStats before 7.0 allows remote attackers to have an unspecified impact via a crafted LoadPlugin directory.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2010-4369
Credits & Attribution
No credits recorded in the NVD database.
References
More from awstats
View All →CVE-2022-46391
AWStats 7.x through 7.8 allows XSS in the hostinfo plugin...
Unknown
0
CVE-2020-35176
In AWStats through 7.8, cgi-bin/awstats.pl?config= accepts a partial absolute pathname...
Medium
5.3
CVE-2020-29600
In AWStats through 7.7, cgi-bin/awstats.pl?config= accepts an absolute pathname, even...
Critical
9.8
CVE-2018-10245
A Full Path Disclosure vulnerability in AWStats through 7.6 allows...
Medium
5.3
CVE-2017-1000501
Awstats version 7.6 and earlier is vulnerable to a path...
Critical
9.8
Affected Vendor
awstats
View all reports →Affected Software
awstats
Vulnerable Versions:
0, 1.0, 2.1., 2.2.3, 2.2.4, 3.0, 3.1, 3.2, 4.0, 4.1, 5.0, 5.1, 5.2, 5.3, 5.4, 5.5, 5.6, 5.7, 5.8, 5.9, 6.0, 6.1, 6.2, 6.3, 6.4, 6.4_1, 6.5, 6.5_1, 6.5_1.857, 6.6, 6.7, 6.8, 6.9
Timeline
Official Publish:
December 2nd, 2010
Last Modified:
August 7th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.