Lucene search

K
cvelistMitreCVELIST:CVE-2003-1365
HistoryOct 17, 2007 - 1:00 a.m.

CVE-2003-1365

2007-10-1701:00:00
mitre
www.cve.org
2

AI Score

7.3

Confidence

Low

EPSS

0.025

Percentile

90.4%

The escape_dangerous_chars function in CGI::Lite 2.0 and earlier does not correctly remove special characters including (1) "" (backslash), (2) “?”, (3) “~” (tilde), (4) “^” (carat), (5) newline, or (6) carriage return, which could allow remote attackers to read or write arbitrary files, or execute arbitrary commands, in shell scripts that rely on CGI::Lite to filter such dangerous inputs.

AI Score

7.3

Confidence

Low

EPSS

0.025

Percentile

90.4%

Related for CVELIST:CVE-2003-1365