CVE-2000-1022 EXPLOIT
7.5
HIGH · CVSS 2.0 · EPSS 7.1% (pctl 94)
Patch early
A public exploit exists.
Description
The mailguard feature in Cisco Secure PIX Firewall 5.2(2) and earlier does not properly restrict access to SMTP commands, which allows remote attackers to execute restricted commands by sending a DATA command before sending the restricted commands.
Scoring
| CVSS | 7.5 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
| EPSS | 7.1% — more likely to be exploited than 94% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2000-12-11 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| cisco | pix firewall software |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Cisco PIX Firewall 4.x/5.x - SMTP Content Filtering Evasion | 2000-09-19 |
References
- http://archives.neohapsis.com/archives/bugtraq/2000-09/0222.html
- http://archives.neohapsis.com/archives/bugtraq/2000-09/0241.html
- http://www.cisco.com/warp/public/707/PIXfirewallSMTPfilter-pub.shtml
- http://www.securityfocus.com/bid/1698
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5277
- http://archives.neohapsis.com/archives/bugtraq/2000-09/0222.html
- http://archives.neohapsis.com/archives/bugtraq/2000-09/0241.html
- http://www.cisco.com/warp/public/707/PIXfirewallSMTPfilter-pub.shtml
- http://www.securityfocus.com/bid/1698
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5277
→ the Explorer · watch your stack · NVD