Back to search
CVE-2000-0639
Published: Oct 13, 2000
Modified: Aug 8, 2024
PUBLISHED
Description
The default configuration of Big Brother 1.4h2 and earlier does not include proper access restrictions, which allows remote attackers to execute arbitrary commands by using bbd to upload a file whose extension will cause it to be executed as a CGI script by the web server.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20000711 Big Brother filename extension vulnerability
mailing-list
x_refsource_BUGTRAQ
big-brother-filename-extension(5103)
vdb-entry
x_refsource_XF
1494
vdb-entry
x_refsource_BID
1472
vdb-entry
x_refsource_OSVDB
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now