First published: Wed Mar 01 2000(Updated: )
SGI InfoSearch CGI program infosrch.cgi allows remote attackers to execute commands via shell metacharacters.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SGI IRIX | =6.5.6 | |
SGI IRIX | =6.5.3f | |
SGI IRIX | =6.5.1 | |
SGI InfoSearch | =1.0 | |
SGI IRIX | =6.5.2m | |
SGI IRIX | =6.5.3 | |
SGI IRIX | =6.5.3m | |
SGI IRIX | =6.5.4 | |
SGI IRIX | =6.5 | |
SGI IRIX | =6.5.7 | |
=1.0 | ||
=6.5 | ||
=6.5.1 | ||
=6.5.2m | ||
=6.5.3 | ||
=6.5.3f | ||
=6.5.3m | ||
=6.5.4 | ||
=6.5.6 | ||
=6.5.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0207 is considered to have a critical severity rating due to the potential for remote command execution.
To fix CVE-2000-0207, update the SGI InfoSearch software to the latest version or apply any available patches that address this vulnerability.
CVE-2000-0207 affects SGI IRIX versions 6.5.1, 6.5.2m, 6.5.3, 6.5.3f, 6.5.3m, 6.5.4, 6.5.6, and 6.5.7, as well as SGI InfoSearch version 1.0.
Yes, CVE-2000-0207 can be exploited remotely by attackers if they can send crafted requests to the vulnerable CGI program.
CVE-2000-0207 is a command injection vulnerability that allows attackers to execute arbitrary commands on the server.