VulnerabilityModified
CVE-2000-0213
The Sambar server includes batch files ECHO.BAT and HELLO.BAT in the CGI directory, which allow remote attackers to execute commands via shell metacharacters.
MEDIUM 5.0EPSS 10.00%
Does this matter?
Lower severity and a low EPSS score (10.00%). Track it; it rarely justifies an emergency change on its own.
Description
The Sambar server includes batch files ECHO.BAT and HELLO.BAT in the CGI directory, which allow remote attackers to execute commands via shell metacharacters.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 10.00% probability · 95th percentile
- CISA KEV
- Not listed
- Affected
- sambar/sambar server
- Source
- cve@mitre.org
References
- http://www.sambar.com/session/highlight?url=/syshelp/history.htm&words=security+&color=redVendor Advisory
- http://www.securityfocus.com/bid/1002Patch, Vendor Advisory
- http://www.securityfocus.com/templates/archive.pike?list=1&msg=38B3E60A.6A84FEC3%40cybcom.net
- http://www.sambar.com/session/highlight?url=/syshelp/history.htm&words=security+&color=redVendor Advisory
- http://www.securityfocus.com/bid/1002Patch, Vendor Advisory
- http://www.securityfocus.com/templates/archive.pike?list=1&msg=38B3E60A.6A84FEC3%40cybcom.net
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.