template.cgi in Free On-Line Dictionary of Computing (FOLDOC) allows remote attackers to read files and execute commands via shell metacharacters in the argument to template.cgi.
Link | Tags |
---|---|
http://wombat.doc.ic.ac.uk/foldoc/index.html | |
http://www.osvdb.org/5591 | vdb entry |
http://archives.neohapsis.com/archives/bugtraq/2001-03/0109.html | patch vendor advisory mailing list |
https://exchange.xforce.ibmcloud.com/vulnerabilities/6217 | vdb entry |