5
CVSSv2

CVE-2000-0213

Published: 23/02/2000 Updated: 07/11/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The Sambar server includes batch files ECHO.BAT and HELLO.BAT in the CGI directory, which allow remote malicious users to execute commands via shell metacharacters.

Vulnerable Product Search on Vulmon Subscribe to Product

sambar sambar server

Exploits

source: wwwsecurityfocuscom/bid/1002/info The Sambar Web/FTP/Proxy Server for Windows NT and 2000 supports DOS-style batch programs as CGI scripts A remote attacker can use any batch file used by the server in the 'cgi-bin' directory to run any valid command-line program with administrator privileges This allows the attacker to read, mo ...