CVE-2000-0588

SawMill 5.0.21 CGI program allows remote attackers to read the first line of arbitrary files by listing the file in the rfcf parameter, whose contents SawMill attempts to parse as configuration commands.
Configurations

Configuration 1 (hide)

cpe:2.3:a:sawmill:sawmill:5.0.21:*:*:*:*:*:*:*

History

20 Nov 2024, 23:32

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/bugtraq/2000-06/0271.html - Exploit, Vendor Advisory () http://archives.neohapsis.com/archives/bugtraq/2000-06/0271.html - Exploit, Vendor Advisory
References () http://archives.neohapsis.com/archives/bugtraq/2000-07/0080.html - () http://archives.neohapsis.com/archives/bugtraq/2000-07/0080.html -
References () http://www.securityfocus.com/bid/1402 - () http://www.securityfocus.com/bid/1402 -

Information

Published : 2000-06-26 04:00

Updated : 2024-11-20 23:32


NVD link : CVE-2000-0588

Mitre link : CVE-2000-0588

CVE.ORG link : CVE-2000-0588


JSON object : View

Products Affected

sawmill

  • sawmill
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor