MultiHTML CGI script allows remote attackers to read arbitrary files and possibly execute arbitrary commands by specifying the file name to the "multi" parameter.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/5285 | vdb entry |
http://archives.neohapsis.com/archives/bugtraq/2000-09/0146.html | mailing list vendor advisory |