Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2002-0307
Description:Directory traversal vulnerability in ans.pl in Avenger's News System (ANS) 2.11 and earlier allows remote attackers to determine the existence of arbitrary files or execute any Perl program on the system via a .. (dot dot) in the p parameter, which reads the target file and attempts to execute the line using Perl's eval function.
Test IDs: 1.3.6.1.4.1.25623.1.0.10875  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2002-0307
BugTraq ID: 4147
http://www.securityfocus.com/bid/4147
Bugtraq: 20020221 "Cthulhu xhAze" - Command execution in Ans.pl (Google Search)
http://marc.info/?l=bugtraq&m=101430868616112&w=2




© 1998-2025 E-Soft Inc. All rights reserved.