Total vulnerabilities in the database
LHA 1.14 and earlier allows attackers to execute arbitrary commands via a directory with shell metacharacters in its name.
CVSS v2:
No CWE or OWASP classifications available.