peter bassill · operator
$ cve CVE-2000-0588 JSON

CVE-2000-0588 EXPLOIT

5.0
MEDIUM · CVSS 2.0 · EPSS 7.5% (pctl 94)

Patch early

A public exploit exists.

Description

SawMill 5.0.21 CGI program allows remote attackers to read the first line of arbitrary files by listing the file in the rfcf parameter, whose contents SawMill attempts to parse as configuration commands.

Scoring

CVSS5.0 (MEDIUM, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
EPSS7.49% — more likely to be exploited than 94% of all CVEs
WeaknessCWE-200
On CISA KEVno
Public exploityes
Published2000-06-26
Last modified2026-06-16

Affected (1)

VendorProduct
sawmillsawmill

Public exploits

SourceTitleDate
exploit-dbFlowerfire Sawmill 5.0.21 - File Access2000-06-26

References

→ the Explorer  ·  watch your stack  ·  NVD