docview before 1.0-15 allows remote attackers to execute arbitrary commands via shell metacharacters that are processed when converting a man page to a web page.
https://exchange.xforce.ibmcloud.com/vulnerabilities/6854
https://euvd.enisa.europa.eu/vulnerability/EUVD-2001-0962
http://www.securityfocus.com/bid/3052
http://www.calderasystems.com/support/security/advisories/CSSA-2001-026.0.txt