← Back to CVEs
CVE-2002-0307
N/ADescription
Directory traversal vulnerability in ans.pl in Avenger's News System (ANS) 2.11 and earlier allows remote attackers to determine the existence of arbitrary files or execute any Perl program on the system via a .. (dot dot) in the p parameter, which reads the target file and attempts to execute the line using Perl's eval function.
CVE Details
CVSS v3.1 ScoreN/A
Published5/31/2002
Last Modified4/16/2026
Sourcenvd
Honeypot Sightings0
Affected Products
avengers_news_system:avengers_news_system
References
http://marc.info/?l=bugtraq&m=101430868616112&w=2(cve@mitre.org)
http://www.securityfocus.com/bid/4147(cve@mitre.org)
http://marc.info/?l=bugtraq&m=101430868616112&w=2(af854a3a-2127-422b-91ae-364da2661108)
http://www.securityfocus.com/bid/4147(af854a3a-2127-422b-91ae-364da2661108)
IOC Correlations
No correlations recorded
This product uses data from the NVD API but is not endorsed or certified by the NVD.