Geoff Hutchison

1 exploit Active since Feb 2000
CVE-2000-0208 EXPLOITDB text WORKING POC
htdig - Arbitrary File Read via Backtick Parameter Injection
The htdig (ht://Dig) CGI program htsearch allows remote attackers to read arbitrary files by enclosing the file name with backticks (`) in parameters to htsearch.