Claus R. F. Overbeck

2 exploits Active since May 2005
CVE-2005-1365 EXPLOITDB text WORKING POC
Pico Server <3.2 - Command Injection
Pico Server (pServ) 3.2 and earlier allows remote attackers to execute arbitrary commands via a URL with multiple leading "/" (slash) characters and ".." sequences.
CVE-2005-1366 EXPLOITDB text WRITEUP
Pico Server <3.2 - Info Disclosure
Pico Server (pServ) 3.2 and earlier allows remote attackers to obtain the source code for CGI scripts via "dirname/../cgi-bin" in a URL.