CVE
- Id
- 2743
- CVE No.
- CVE-2000-1176
- Status
- Candidate
- Description
- Directory traversal vulnerability in YaBB search.pl CGI script allows remote attackers to read arbitrary files via a .. (dot dot) attack in the "catsearch" form field.
- Phase
- Proposed (20001219)
- Votes
- MODIFY(1) Frech | NOOP(2) Cole, Wall
- Comments
- Frech> XF:yabb-search-format-string(5501)