Security Advisory

CVE-1999-0146

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 1999-09-29 04:00:00
Last updated 2024-08-01 16:27:57
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The campas CGI program provided with some NCSA web servers allows an attacker to execute arbitrary commands via encoded carriage return characters in the query string, as demonstrated by reading the password file.