CVE

Id
3038  
CVE No.
CVE-2001-0217  
Status
Candidate  
Description
Directory traversal vulnerability in PALS Library System pals-cgi program allows remote attackers to read arbitrary files via a .. (dot dot) in the documentName parameter.  
Phase
Modified (20060609)  
Votes
ACCEPT(1) Baker | MODIFY(2) Frech, Lawler | NOOP(2) Cole, Ziese  
Comments
Lawler> Combine with CVE-2001-0216 | Frech> XF:webpals-library-cgi-url(6102)