10
CVSSv2

CVE-2000-0128

Published: 04/02/2000 Updated: 10/09/2008
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The Finger Server 0.82 allows remote malicious users to execute commands via shell metacharacters.

Vulnerable Product Search on Vulmon Subscribe to Product

daniel beckham the finger server 0.82 beta

daniel beckham the finger server 0.80 beta

daniel beckham the finger server 0.81 beta

daniel beckham the finger server 0.83 beta

Exploits

source: wwwsecurityfocuscom/bid/974/info 'The Finger Server' is a perl script for providing plan-like functionality through a website Due to insufficient input checking it is possible for remote unauthenticated users to execute shell commands on the server which will run with the priveleges of the webserver A request like: http ://ta ...