CVE-2002-0094

config_converters.py in BSCW (Basic Support for Cooperative Work) 3.x and versions before 4.06 allows remote attackers to execute arbitrary commands via shell metacharacters in the file name during filename conversion.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:fraunhofer_fit:bscw:3.4:*:*:*:*:*:*:*
cpe:2.3:a:fraunhofer_fit:bscw:4.0:*:*:*:*:*:*:*

History

20 Nov 2024, 23:38

Type Values Removed Values Added
References () http://bscw.gmd.de/WhatsNew.html - () http://bscw.gmd.de/WhatsNew.html -
References () http://www.iss.net/security_center/static/7774.php - Patch, Vendor Advisory () http://www.iss.net/security_center/static/7774.php - Patch, Vendor Advisory
References () http://www.securityfocus.com/archive/1/248000 - Patch, Vendor Advisory () http://www.securityfocus.com/archive/1/248000 - Patch, Vendor Advisory
References () http://www.securityfocus.com/bid/3776 - Patch, Vendor Advisory () http://www.securityfocus.com/bid/3776 - Patch, Vendor Advisory

Information

Published : 2002-03-25 05:00

Updated : 2025-04-03 01:03


NVD link : CVE-2002-0094

Mitre link : CVE-2002-0094

CVE.ORG link : CVE-2002-0094


JSON object : View

Products Affected

fraunhofer_fit

  • bscw