CVE

Id
2935  
CVE No.
CVE-2001-0114  
Status
Candidate  
Description
statsconfig.pl in OmniHTTPd 2.07 allows remote attackers to overwrite arbitrary files via the cgidir parameter.  
Phase
Proposed (20010214)  
Votes
MODIFY(1) Frech | NOOP(3) Christey, Cole, Wall  
Comments
Christey> XF:omnihttpd-statsconfig-corrupt-files | URL:http://xforce.iss.net/static/5955.php | Frech> XF:omnihttpd-statsconfig-corrupt-files(5955) | Christey> MISC:http://www.omnicron.ca/httpd/docs/release.html | May be vague acknowledgement; need to ask | mailto:support@omnicron.ca?subject=OmniHTTPd Technical Support | (and ask them about the other OmniHTTP issues as well)