docview before 1.0-15 allows remote attackers to execute arbitrary commands via shell metacharacters that are processed when converting a man page to a web page.
https://exchange.xforce.ibmcloud.com/vulnerabilities/6854
http://www.calderasystems.com/support/security/advisories/CSSA-2001-026.0.txt