CVE-2000-0757 EXPLOIT
10.0
HIGH · CVSS 2.0 · EPSS 4.1% (pctl 90)
Patch early
A public exploit exists.
Description
The sysgen service in Aptis Totalbill does not perform authentication, which allows remote attackers to gain root privileges by connecting to the service and specifying the commands to be executed.
Scoring
| CVSS | 10.0 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
| EPSS | 4.09% — more likely to be exploited than 90% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2000-10-20 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| aptis software | totalbill |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Aptis Software TotalBill 3.0 - Remote Command Execution | 2000-08-08 |
References
→ the Explorer · watch your stack · NVD