7.5
CVSSv2

CVE-2001-0461

Published: 27/06/2001 Updated: 10/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

template.cgi in Free On-Line Dictionary of Computing (FOLDOC) allows remote malicious users to read files and execute commands via shell metacharacters in the argument to template.cgi.

Vulnerable Product Search on Vulmon Subscribe to Product

denis howe foldoc

Exploits

source: wwwsecurityfocuscom/bid/2484/info A vulnerability exists in a CGI script called "The Free Online Dictionary of Computing" Due to a failure to properly validate user supplied input, a remote attacker can compose and submit requests for files readable by the webserver, as well as executing certain commands (those requiring no comm ...