CVE

Id
1357  
CVE No.
CVE-1999-1377  
Status
Candidate  
Description
Matt Wright"s download.cgi 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the f parameter.  
Phase
Proposed (20010912)  
Votes
MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall  
Comments
Frech> XF:download-cgi-directory-traversal(8279)