7.5

CVE-2000-0639

Exploit
The default configuration of Big Brother 1.4h2 and earlier does not include proper access restrictions, which allows remote attackers to execute arbitrary commands by using bbd to upload a file whose extension will cause it to be executed as a CGI script by the web server.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Sean Macguire ≫ Big Brother Version 1.0
Sean Macguire ≫ Big Brother Version 1.1
Sean Macguire ≫ Big Brother Version 1.2
Sean Macguire ≫ Big Brother Version 1.3
Sean Macguire ≫ Big Brother Version 1.3b
Sean Macguire ≫ Big Brother Version 1.4
Sean Macguire ≫ Big Brother Version 1.4g
Sean Macguire ≫ Big Brother Version 1.4h
Sean Macguire ≫ Big Brother Version 1.4h1
Sean Macguire ≫ Big Brother Version 1.09b
Sean Macguire ≫ Big Brother Version 1.09c
Sean Macguire ≫ Big Brother Version 1.09d
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 9.49% 0.948
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://archives.neohapsis.com/archives/bugtraq/2000-07/0171.html
Patch
Vendor Advisory
http://www.osvdb.org/1472
http://www.securityfocus.com/bid/1494
Vendor Advisory
Exploit
https://exchange.xforce.ibmcloud.com/vulnerabilities/5103