CVE

Id
3031  
CVE No.
CVE-2001-0210  
Status
Candidate  
Description
Directory traversal vulnerability in commerce.cgi CGI program allows remote attackers to read arbitrary files via a .. (dot dot) attack in the page parameter.  
Phase
Proposed (20010309)  
Votes
MODIFY(1) Frech | NOOP(3) Cole, Lawler, Ziese  
Comments
Frech> XF:commerce-cgi-view-files(6095)