CVE

Id
3828  
CVE No.
CVE-2001-1024  
Status
Candidate  
Description
login.gas.bat and other CGI scripts in Entrust getAccess allow remote attackers to execute Java programs, and possibly arbitrary commands, by specifying an alternate -classpath argument.  
Phase
Proposed (20020131)  
Votes
ACCEPT(2) Frech, Green | NOOP(4) Armstrong, Cole, Foat, Wall  
Comments
CHANGE> [Green changed vote from REVIEWING to ACCEPT]