Description
FileSeek.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) head or (2) foot parameters.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Thijs Bosschert · textwebappscgi
https://www.exploit-db.com/exploits/22227
References (2)
Core 2
Core References
Patch, Vendor Advisory vdb-entry
x_refsource_xf
http://www.iss.net/security_center/static/8857.php
Exploit, Patch, Vendor Advisory mailing-list
x_refsource_vuln-dev
http://archives.neohapsis.com/archives/vuln-dev/2002-q2/0132.html
Scores
EPSS
0.1162
EPSS Percentile
93.7%
Details
Status
published
Products (1)
craig_patchett/fileseek
Published
Jun 18, 2002
Tracked Since
Feb 18, 2026