Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2000-0639

Опубликовано: 11 июн. 2000
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

The default configuration of Big Brother 1.4h2 and earlier does not include proper access restrictions, which allows remote attackers to execute arbitrary commands by using bbd to upload a file whose extension will cause it to be executed as a CGI script by the web server.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:sean_macguire:big_brother:1.0:*:*:*:*:*:*:*
cpe:2.3:a:sean_macguire:big_brother:1.1:*:*:*:*:*:*:*
cpe:2.3:a:sean_macguire:big_brother:1.2:*:*:*:*:*:*:*
cpe:2.3:a:sean_macguire:big_brother:1.3:*:*:*:*:*:*:*
cpe:2.3:a:sean_macguire:big_brother:1.3b:*:*:*:*:*:*:*
cpe:2.3:a:sean_macguire:big_brother:1.4:*:*:*:*:*:*:*
cpe:2.3:a:sean_macguire:big_brother:1.4g:*:*:*:*:*:*:*
cpe:2.3:a:sean_macguire:big_brother:1.4h:*:*:*:*:*:*:*
cpe:2.3:a:sean_macguire:big_brother:1.4h1:*:*:*:*:*:*:*
cpe:2.3:a:sean_macguire:big_brother:1.09b:*:*:*:*:*:*:*
cpe:2.3:a:sean_macguire:big_brother:1.09c:*:*:*:*:*:*:*
cpe:2.3:a:sean_macguire:big_brother:1.09d:*:*:*:*:*:*:*

EPSS

Процентиль: 87%
0.03556
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
почти 4 года назад

The default configuration of Big Brother 1.4h2 and earlier does not include proper access restrictions, which allows remote attackers to execute arbitrary commands by using bbd to upload a file whose extension will cause it to be executed as a CGI script by the web server.

EPSS

Процентиль: 87%
0.03556
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other