The search97cgi/vtopic" in the UnixWare 7 scohelphttp webserver allows remote attackers to read arbitrary files via a .. (dot dot) attack.
Link | Tags |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2000-09/0086.html | vendor advisory mailing list |
http://www.securityfocus.com/bid/1663 | vdb entry vendor advisory |