Vulnerability Description
The Sambar server includes batch files ECHO.BAT and HELLO.BAT in the CGI directory, which allow remote attackers to execute commands via shell metacharacters.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sambar | Sambar Server | <= 4.2 |
References
- http://www.sambar.com/session/highlight?url=/syshelp/history.htm&words=security+Vendor Advisory
- http://www.securityfocus.com/bid/1002PatchVendor Advisory
- http://www.securityfocus.com/templates/archive.pike?list=1&msg=38B3E60A.6A84FEC3
- http://www.sambar.com/session/highlight?url=/syshelp/history.htm&words=security+Vendor Advisory
- http://www.securityfocus.com/bid/1002PatchVendor Advisory
- http://www.securityfocus.com/templates/archive.pike?list=1&msg=38B3E60A.6A84FEC3
FAQ
What is CVE-2000-0213?
CVE-2000-0213 is a vulnerability with a CVSS score of 5.0 (MEDIUM). The Sambar server includes batch files ECHO.BAT and HELLO.BAT in the CGI directory, which allow remote attackers to execute commands via shell metacharacters.
How severe is CVE-2000-0213?
CVE-2000-0213 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2000-0213?
Check the references section above for vendor advisories and patch information. Affected products include: Sambar Sambar Server.