1 results (0.003 seconds)

CVSS: 5.0EPSS: 1%CPEs: 1EXPL: 1

Matt Wright's download.cgi 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the f parameter. • http://pulhas.org/phrack/55/P55-07.html •