PT-2001-2072 · Suse · Susehelp+1
Published
2001-11-22
·
Updated
2017-10-10
·
CVE-2001-0918
CVSS v2.0
5.1
Medium
| Vector | AV:N/AC:H/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
SuSE versions 7.2 and 7.3
Description
The issue is related to vulnerabilities in CGI scripts in susehelp, which allow remote attackers to execute arbitrary commands due to insecure file opening.
Recommendations
For SuSE version 7.2, update the susehelp package to a version that securely opens files.
For SuSE version 7.3, update the susehelp package to a version that securely opens files.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Suse
Susehelp