VulnerabilityModified
CVE-1999-1178
Sambar Server 4.1 beta allows remote attackers to obtain sensitive information about the server via an HTTP request for the dumpenv.pl script.
MEDIUM 5.0EPSS 1.46%
Does this matter?
Lower severity and a low EPSS score (1.46%). Track it; it rarely justifies an emergency change on its own.
Description
Sambar Server 4.1 beta allows remote attackers to obtain sensitive information about the server via an HTTP request for the dumpenv.pl script.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 1.46% probability · 72th percentile
- CISA KEV
- Not listed
- Affected
- sambar/sambar server
- Source
- cve@mitre.org
References
- http://www.securityfocus.com/archive/1/9505Exploit, Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/3223
- http://www.securityfocus.com/archive/1/9505Exploit, Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/3223
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.