CVE-2002-2365

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
31/12/2002
Last modified:
03/04/2025

Description

Simple WAIS (SWAIS) 1.11 allows remote attackers to execute arbitrary commands via the shell metacharacters in the search field, as demonstrated using the "|" (pipe) character.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:springer_verlag_berlin_heidelberg:simple_wais:1.11:*:*:*:*:*:*:*