The htdig (ht://Dig) CGI program htsearch allows remote attackers to read arbitrary files by enclosing the file name with backticks (`) in parameters to htsearch.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/1026 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2000-02-28 21:00
Updated : 2008-09-10 12:03
NVD link : CVE-2000-0208
Mitre link : CVE-2000-0208
JSON object : View
CWE
Products Affected
htdig
- htdig