CVE
- Id
- 2935
- CVE No.
- CVE-2001-0114
- Status
- Candidate
- Description
- statsconfig.pl in OmniHTTPd 2.07 allows remote attackers to overwrite arbitrary files via the cgidir parameter.
- Phase
- Proposed (20010214)
- Votes
- MODIFY(1) Frech | NOOP(3) Christey, Cole, Wall
- Comments
- Christey> XF:omnihttpd-statsconfig-corrupt-files | URL:http://xforce.iss.net/static/5955.php | Frech> XF:omnihttpd-statsconfig-corrupt-files(5955) | Christey> MISC:http://www.omnicron.ca/httpd/docs/release.html | May be vague acknowledgement; need to ask | mailto:support@omnicron.ca?subject=OmniHTTPd Technical Support | (and ask them about the other OmniHTTP issues as well)