The replication monitor CGI script (repl-monitor-cgi.pl) in Red Hat Administration Server, as used by Red Hat Directory Server 8.0 EL4 and EL5, allows remote attackers to execute arbitrary commands.
https://www.redhat.com/archives/fedora-package-announce/2008-April/msg00386.html
https://www.redhat.com/archives/fedora-package-announce/2008-April/msg00380.html
https://exchange.xforce.ibmcloud.com/vulnerabilities/41840
https://euvd.enisa.europa.eu/vulnerability/EUVD-2008-0899
https://bugzilla.redhat.com/show_bug.cgi?id=437301
http://www.vupen.com/english/advisories/2008/1449/references
http://www.redhat.com/support/errata/RHSA-2008-0201.html
http://www.redhat.com/support/errata/RHSA-2008-0199.html
http://secunia.com/advisories/30114
http://secunia.com/advisories/29826
http://secunia.com/advisories/29761
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01433676