The htdig (ht://Dig) CGI program htsearch allows remote attackers to read arbitrary files by enclosing the file name with backticks (`) in parameters to htsearch.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/1026 |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2000-02-29 05:00
Updated : 2008-09-10 19:03
NVD link : CVE-2000-0208
Mitre link : CVE-2000-0208
CVE.ORG link : CVE-2000-0208
JSON object : View
Products Affected
htdig
- htdig
CWE