HAMweather 2.x allows remote attackers to modify administrative settings and obtain sensitive information via a direct request to hwadmin.cgi.Referenceshttp://www.hamweather.net/hw3/hw2securityalert.shtmlhttp://securitytracker.com/id?1005270http://www.iss.net/security_center/static/10182.php