Directory traversal vulnerability in story.pl in Interactive Story 1.3 allows a remote attacker to read arbitrary files via a .. (dot dot) attack on the "next" parameter.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2002-03-09T05:00:00

Updated: 2024-08-08T04:37:05.962Z

Reserved: 2001-10-30T00:00:00

Link: CVE-2001-0804

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2001-12-06T05:00:00.000

Modified: 2024-11-20T23:36:11.267

Link: CVE-2001-0804

cve-icon Redhat

No data.