CVE Vulnerabilities

CVE-2002-2033

Published: Dec 31, 2002 | Modified: Sep 05, 2008
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

faqmanager.cgi in FAQManager 2.2.5 and earlier allows remote attackers to read arbitrary files by specifying the filename in the toc parameter with a trailing null character (%00).

Affected Software

Name Vendor Start Version End Version
Faqmanager.cgi Faqmanager 2.0 (including) 2.0 (including)
Faqmanager.cgi Faqmanager 2.1 (including) 2.1 (including)
Faqmanager.cgi Faqmanager 2.1.1 (including) 2.1.1 (including)
Faqmanager.cgi Faqmanager 2.1.2 (including) 2.1.2 (including)
Faqmanager.cgi Faqmanager 2.2 (including) 2.2 (including)
Faqmanager.cgi Faqmanager 2.2.1 (including) 2.2.1 (including)
Faqmanager.cgi Faqmanager 2.2.2 (including) 2.2.2 (including)
Faqmanager.cgi Faqmanager 2.2.3 (including) 2.2.3 (including)
Faqmanager.cgi Faqmanager 2.2.4 (including) 2.2.4 (including)
Faqmanager.cgi Faqmanager 2.2.5 (including) 2.2.5 (including)

References