5
CVSSv2

CVE-2001-0463

Published: 27/06/2001 Updated: 10/10/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Directory traversal vulnerability in cal_make.pl in PerlCal allows remote malicious users to read arbitrary files via a .. (dot dot) in the p0 parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

acme labs perlcal 2.13

acme labs perlcal 2.18

acme labs perlcal 2.95

acme labs perlcal 2.9a

acme labs perlcal 2.3

acme labs perlcal 2.4

acme labs perlcal 2.5

acme labs perlcal 2.9b

acme labs perlcal 2.9c

acme labs perlcal 2.6

acme labs perlcal 2.7

acme labs perlcal 2.9d

acme labs perlcal 2.9e

acme labs perlcal 2.80

acme labs perlcal 2.9

Exploits

source: wwwsecurityfocuscom/bid/2663/info PerlCal is a CGI script written by Acme Software that allows web-based calendar sharing and related functions A vulnerability exists in PerlCal which can allow a remote user to traverse the filesystem of a target host This may lead to the disclosure of potentially sensitive file contents File ...