SawMill 5.0.21 CGI program allows remote attackers to read the first line of arbitrary files by listing the file in the rfcf parameter, whose contents SawMill attempts to parse as configuration commands.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2000-10-13T04:00:00

Updated: 2024-08-08T05:21:31.286Z

Reserved: 2000-07-19T00:00:00

Link: CVE-2000-0588

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2000-06-26T04:00:00.000

Modified: 2013-07-30T04:00:00.000

Link: CVE-2000-0588

cve-icon Redhat

No data.