Total vulnerabilities in the database
The citat.pl script allows remote attackers to read arbitrary files via a full pathname in the argument.
CVSS v2:
No CWE or OWASP classifications available.