RULE(RULE ID:322670)

Rule General Information
Release Date: 2019-07-08
Rule Name: Barracuda IMG.PL f Parameter Command Execution Vulnerability (CVE-2005-2847)
Severity:
CVE ID:
Rule Protection Details
Description: img.pl in Barracuda Spam Firewall running firmware 3.1.16 and 3.1.17 allows remote attackers to execute arbitrary commands via shell metacharacters in the f parameter.
Impact: An attacker can execute arbitrary command via a successful exploit in the context of the vulnerable software.
Affected OS: Windows, Linux, Others
Reference: SecurityFocusBID:14712
http://marc.info/?l=bugtraq&m=112560044813390&w=2
http://www.securitytracker.com/alerts/2005/Sep/1014837.html
http://www.securiweb.net/wiki/Ressources/AvisDeSecurite/2005.1
Solutions
The vendors have released upgrade patches to fix vulnerabilities, please visit:
http://www.barracudanetworks.com/ns/products/spam_overview.php