7.5
CVSSv2

CVE-2002-0612

Published: 18/06/2002 Updated: 05/09/2008
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

FileSeek.cgi allows remote malicious users to execute arbitrary commands via shell metacharacters in the (1) head or (2) foot parameters.

Vulnerable Product Search on Vulmon Subscribe to Product

craig patchett fileseek

Exploits

source: wwwsecurityfocuscom/bid/6783/info FileSeek is an example cgi-script from "The CGI/Perl Cookbook from John Wiley & Sons" The script is written and maintained by Craig Patchett It is mainly used to find and download files on a web server It has been reported that FileSeekcgi and FileSeek2cgi do not filter shell metacharact ...