AWStats 8.0 is vulnerable to Command Injection via the open function
https://pentest-tools.com/PTT-2025-021-Code-Execution-in-AWStats.pdf
https://lists.debian.org/debian-lts-announce/2026/03/msg00013.html
https://github.com/eldy/AWStats/blob/develop/wwwroot/cgi-bin/awstats.pl