Vulnerability Description
Kootenay Web KW Whois 1.0 CGI program allows remote attackers to execute arbitrary commands via shell metacharacters in the "whois" parameter.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Kootenay Web Inc | Kootenay Web Inc Whois | 1.0 |
References
- http://archives.neohapsis.com/archives/bugtraq/2000-10/0419.html
- http://archives.neohapsis.com/archives/bugtraq/2000-10/0420.htmlPatchVendor Advisory
- http://www.kootenayweb.bc.ca/scripts/whois.txt
- http://www.securityfocus.com/bid/1883ExploitPatchVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5438
- http://archives.neohapsis.com/archives/bugtraq/2000-10/0419.html
- http://archives.neohapsis.com/archives/bugtraq/2000-10/0420.htmlPatchVendor Advisory
- http://www.kootenayweb.bc.ca/scripts/whois.txt
- http://www.securityfocus.com/bid/1883ExploitPatchVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5438
FAQ
What is CVE-2000-0941?
CVE-2000-0941 is a vulnerability with a CVSS score of 10.0 (HIGH). Kootenay Web KW Whois 1.0 CGI program allows remote attackers to execute arbitrary commands via shell metacharacters in the "whois" parameter.
How severe is CVE-2000-0941?
CVE-2000-0941 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2000-0941?
Check the references section above for vendor advisories and patch information. Affected products include: Kootenay Web Inc Kootenay Web Inc Whois.