CVE-2005-1527

Eval injection vulnerability in awstats.pl in AWStats 6.4 and earlier, when a URLPlugin is enabled, allows remote attackers to execute arbitrary Perl code via the HTTP Referrer, which is used in a $url parameter that is inserted into an eval function call.

Published: 2005-08-15 Last update: 2026-04-16 Assigner: [email protected] Source: [email protected]

Conclusion & alert: CVE-2005-1527 is rated Moderate Risk (46.8/100): CVSS Medium severity, with medium exploitation likelihood (EPSS 1.33%). Mandatory action: Review affected assets and schedule remediation.

Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.

Exploit prediction scoring system (EPSS) score for CVE-2005-1527

EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).

# Date Old EPSS score New EPSS score Delta (New - Old)
1 2025-03-30 1.84% 1.33% -0.51%
2 2025-03-29 1.33% 1.84% +0.51%
3 2025-03-24 1.33%

Full EPSS history (9 records total)

Common vulnerability scoring system (CVSS) metrics for CVE-2005-1527

CVSS metrics for this CVE.

Base score Version Severity Vector Exploitability Impact Score source
5.0 2.0 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N Click to expand
Access vector (AV:N)
Can be exploited remotely over network reachability.
Access complexity (AC:L)
Exploitation conditions are straightforward and predictable.
Authentication (AU:N)
No authentication is required.
Confidentiality impact (C:N)
No confidentiality impact.
Integrity impact (I:P)
Partial integrity impact.
Availability impact (A:N)
No availability impact.
10.0 2.9 [email protected]

Weakness enumeration for CVE-2005-1527

OS Trackers for CVE-2005-1527

vendor priority summary link
alpine CVE-2005-1527: no source package rows; 0 state rows across 0 repos (none); fixed 0, open 0. https://security.alpinelinux.org/vuln/CVE-2005-1527
debian medium CVE-2005-1527 medium priority: Debian including 1 source packages (awstats), 5 status rows across 5 suites (bookworm, bullseye, forky, sid, trixie): resolved 5. https://security-tracker.debian.org/tracker/CVE-2005-1527
ubuntu medium CVE-2005-1527 medium priority: Ubuntu including 1 source packages (awstats), 4 status rows across 4 suites (dapper, edgy, feisty, upstream): not-affected 3, needs-triage 1. https://ubuntu.com/security/CVE-2005-1527

Affected software / configurations for CVE-2005-1527

Vendor Product Version Raw CPE
awstats awstats <= 6.4 cpe:2.3:a:awstats:awstats:*:*:*:*:*:*:*:*
canonical ubuntu_linux 5.04 cpe:2.3:o:canonical:ubuntu_linux:5.04:*:*:*:*:*:*:*
debian debian_linux 3.0 cpe:2.3:o:debian:debian_linux:3.0:*:*:*:*:*:*:*
debian debian_linux 3.1 cpe:2.3:o:debian:debian_linux:3.1:*:*:*:*:*:*:*

References for CVE-2005-1527

URL Tags
http://secunia.com/advisories/16412 Broken Link Patch Vendor Advisory
http://secunia.com/advisories/17463 Broken Link
http://securitytracker.com/id?1014636 Broken Link Patch Third Party Advisory VDB Entry
http://www.debian.org/security/2005/dsa-892 Mailing List Third Party Advisory
http://www.idefense.com/application/poi/display?id=290&type=vulnerabilities&flashstatus=false Broken Link
http://www.novell.com/linux/security/advisories/2005_19_sr.html Broken Link
http://www.osvdb.org/18696 Broken Link Patch
http://www.securiteam.com/unixfocus/5DP0J00GKE.html Broken Link Vendor Advisory
http://www.securityfocus.com/bid/14525 Broken Link Third Party Advisory VDB Entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/21769 Third Party Advisory VDB Entry
https://usn.ubuntu.com/167-1/ Broken Link
cvelogic Threat Intelligence