积极预防 及时发现
快速响应 力保恢复
ePerl 2.2.12允许远程攻击者通过将目标文件的完整路径名指定为bar.phtml的一个参数,...
发布时间:2002-05-20 信息来源:管理员

CNCVE编号:CNCVE-19991437 CVE编号:CVE-1999-1437 安全级别:中 漏洞中文描述: ePerl 2.2.12允许远程攻击者通过将目标文件的完整路径名指定为bar.phtml的一个参数,来读取任意文件并可能执行某些命令。 漏洞英文描述: ePerl 2.2.12 allows remote attackers to read arbitrary files and possibly execute certain commands by specifying a full pathname of the target file as an argument to bar.phtml. 漏洞参考: 系统类型:其他 漏洞类型:其他