CVE-2001-0980

docview before 1.0-15 allows remote attackers to execute arbitrary commands via shell metacharacters that are processed when converting a man page to a web page.

Score7.5
Access VectorNETWORK
Access ComplexityLOW
AuthenticationNONE
Confidentiality ImpactPARTIAL
Integrity ImpactPARTIAL
Availability ImpactPARTIAL
Published2001-07-17 12:00:00.000-04
Last Modified2017-10-09 09:29:57.000-04

Vulnerable Software List

VendorProductVersions
Caldera Openlinux Workstation 3.1
Caldera Openlinux Server 3.1

References

SourceLink
CALDERACSSA-2001-026.0
BID3052
XFdocview-httpd-command-execution(6854)