Description

AWStats 8.0 is vulnerable to Command Injection via the open function

INFO

Published Date :

2026-03-20T00:00:00.000Z

Last Modified :

2026-03-25T22:10:36.546Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2025-63261 vulnerability.

Vendors Products
Awstats
  • Awstats
Debian
  • Debian Linux
Eldy
  • Awstats

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact