
| http://insecure.org/sploits/webgais.query.stripquotes.html |

| http://www.securityfocus.com/bid/2077 |

| http://www.securityfocus.com/bid/2058 |

| http://www.juniper.net/security/auto/vulnerabilities/vuln2077.html |

| http://www.juniper.net/security/auto/vulnerabilities/vuln2058.html |

| http://osvdb.org/237 |

| http://www.ca.com/securityadvisor/vulninfo/vuln.aspx?id=1406 |

| http://uk.wrs.yahoo.com/_ylt=A0Je5h.../auto/vulnerabilities/vuln2058.html |

| http://www.symantec.com/business/se...acksignatures/detail.jsp?asid=20518 |

| http://xforce.iss.net/xforce/xfdb/1467 |
| WebGais forgot to strip single quotes in query string ... Oops! |
| Webgais takes a query string, and quotes it in the perl code. ... The main utility is called "webgais" and does the actual interfacing with the search tool. ... |
| http://insecure.org/sploits/webgais.query.stripquotes.html |
| WEBgais websendmail Remote Command Execution Vulnerability |
| SecurityFocus is designed to facilitate discussion on computer security related topics, create computer security awareness, and to provide the Internet's largest ... |
| http://www.securityfocus.com/bid/2077 |
| WEBgais websendmail Remote Command Execution Vulnerability |
| Title: WEBgais websendmail Remote Command Execution Vulnerability. Severity: ... WEBgais is a package that provides a web interface to the "gais" (Global Area ... |
| http://www.juniper.net/security/auto/vulnerabilities/vuln2077.html |
| 237: WebGais websendmail Arbitrary Command Execution |
| Click the edit link above to add more information. Contributing is fast and easy, and ... Provided by CVE) : websendmail in Webgais 1.0 allows a remote user to ... |
| http://osvdb.org/237 |
| WEBgais Remote Command Execution Vulnerability |
| WEBgais is a script that provides a web interface to the "gais" (Global Area ... The vulnerable script is /cgi-bin/webgais: due to improper input checking it ... |
| http://uk.wrs.yahoo.com/_ylt=A0Je5hC0pyJJlu0AFzXdmMwF;_ylu=X3oDMTB2NW50aG1hBGNvb... |
| CGI abuses : webgais |
| webgais;Checks for the presence of /cgi-bin/webgais ... Dedicated Advanced Standard Recurring No Risk Desktop ... The 'webgais' CGI is installed. This CGI has ... |
| http://www.securityspace.com/smysecure/catid.html?id=10300 |
| HTTP WEBGais Remote Command Exec: Attack Signature - Symantec Corp. |
| This signature detects attempts to exploit a vulnerability in WebGais search tool. ... WEBgais is a script that provides a web interface to the "gais" (Global Area ... |
| http://www.symantec.com/business/security_response/attacksignatures/detail.jsp?a... |
| WEBgais CGI script allows remote command execution (HTTP_webgais) |
| WEBgais is a Web-based index/query system written in the Perl language. ... Disable the WEBgais script to prevent attackers from exploiting this vulnerability. ... |
| http://www.iss.net/security_center/reference/vuln/HTTP_webgais.htm |
| Tenable Network Security |
| webgais. This script is Copyright (C) 1999 Renaud Deraison. Family. CGI abuses. Nessus ... The 'webgais' CGI is installed. This CGI may let an attacker execute ... |
| http://www.nessus.org/plugins/index.php?view=single&id=10300 |
| webgais - Vulnerability Scanning Solutions, LLC. |
| webgais Vulnerability Scan. Vulnerability Scan Summary. Searches for the existence of /cgi-bin/webgais. Detailed Explanation for this Vulnerability Test ... |
| http://www.networkscanning.com/webgais-VSS_10300.html |
| WebGais forgot to strip single quotes in query string ... Oops! |
| Webgais takes a query string, and quotes it in the perl code. But you can just close the quotes yourself, as it doesn't strip them from your query! |
| http://insecure.org/sploits/webgais.query.stripquotes.html |
| WEBgais Remote Command Execution Vulnerability |
| SecurityFocus is designed to facilitate discussion on computer security related topics, create computer security awareness, and to provide the Internet's largest and most ... |
| http://www.securityfocus.com/bid/2058 |
| WEBgais websendmail Remote Command Execution Vulnerability |
| SecurityFocus is designed to facilitate discussion on computer security related topics, create computer security awareness, and to provide the Internet's largest and most ... |
| http://www.securityfocus.com/bid/2077 |
| WEBgais Remote Command Execution Vulnerability |
| WEBgais Remote Command Execution Vulnerability ... Title: WEBgais Remote Command Execution Vulnerability Severity: HIGH Description: |
| http://www.juniper.net/security/auto/vulnerabilities/vuln2058.html |
| WEBgais CGI - CA |
| WEBgais CGI Date Discovered: 10 Jul 1997 Date ... |
| http://www.ca.com/securityadvisor/vulninfo/vuln.aspx?id=1406 |
| ISS X-Force Database: http-webgais-query(1467): WEBgais CGI script ... |
| Description: WEBgais contains a vulnerability that could allow an attacker to execute arbitrary code. The way the WEBgais script handles shell metacharacters could allow a remote ... |
| http://xforce.iss.net/xforce/xfdb/1467 |
| WebGais Vulnerability |
| Overview: Vendor Notes: Exploits vulnerability in WebGais, an interface to the GAIS search tool. Category: Exploit: A way of breaking into a system. |
| http://www.pestpatrol.com/zks/pestinfo/w/webgais_vulnerability.asp |
| WEBgais CGI script allows remote command execution (HTTP_Webgais) |
| WEBgais CGI script allows remote command execution (HTTP_Webgais) About this signature or vulnerability. RealSecure Network, RealSecure Server Sensor: |
| http://www.iss.net/security_center/reference/vuln/HTTP_Webgais.htm |
| HTTP WEBGais Remote Command Exec: Attack Signature - Symantec Corp. |
| This signature detects attempts to exploit a vulnerability in WebGais search tool. ... Severity: Medium This attack could pose a moderate security threat. It does not require ... |
| http://www.symantec.com/business/security_response/attacksignatures/detail.jsp?a... |
| WebGais Vulnerability - CA |
| Description Vendor Description Exploits vulnerability in WebGais, an interface to the GAIS search tool. Category Exploit: |
| http://www.ca.com/us/securityadvisor/pest/pest.aspx?id=6694 |

