6.4
CVSSv2

CVE-1999-0174

Published: 01/02/1997 Updated: 17/08/2022
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 645
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

The view-source CGI program allows remote malicious users to read arbitrary files via a .. (dot dot) attack.

Vulnerable Product Search on Vulmon Subscribe to Product

netscape communicator 4.05

netscape communicator 4.07

netscape communicator 4.51

netscape communicator 4.06

netscape communicator 4.0

netscape communicator 4.6

netscape communicator 4.5

Exploits

source: wwwsecurityfocuscom/bid/2251/info view-source is a script included with the httpd package bundled with Skunkware 20 Skunkware 20 is a variant of the UNIX Operating System distributed by Santa Cruz Operations A problem with the view-source script could allow access to restricted files remotely The problem occurs in the handli ...