First published: Tue Jul 07 1998(Updated: )
ePerl 2.2.12 allows remote attackers to read arbitrary files and possibly execute certain commands by specifying a full pathname of the target file as an argument to bar.phtml.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ePerl | =2.2.12 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-1437 is classified as a critical vulnerability due to its potential for unauthorized access to sensitive files.
To mitigate CVE-1999-1437, upgrade ePerl to a version later than 2.2.12 where the vulnerability has been patched.
CVE-1999-1437 specifically affects ePerl version 2.2.12.
Yes, CVE-1999-1437 may allow remote attackers to execute certain commands through file path manipulation.
CVE-1999-1437 allows remote attackers to read arbitrary files, compromising the confidentiality of sensitive data.