CVE-2002-0307 Information
Feb 14, 2021
cve
Description
Directory traversal vulnerability in ans.pl in Avenger’s News System (ANS) 2.11 and earlier allows remote attackers to determine the existence of arbitrary files or execute any Perl program on the system via a .. (dot dot) in the p parameter which reads the target file and attempts to execute the line using Perl’s eval function.
Reference
http://marc.info/?l=bugtraq&m=101430868616112&w=2 http://www.securityfocus.com/bid/4147
Share on: