First published: Mon Dec 11 2000(Updated: )
Buffer overflow in the SHTML logging functionality of iPlanet Web Server 4.x allows remote attackers to execute arbitrary commands via a long filename with a .shtml extension.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
iPlanet Web Server | =4.x |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-1077 is classified as a high-severity vulnerability due to its potential for remote code execution.
To fix CVE-2000-1077, upgrade to a newer version of the iPlanet Web Server that does not contain this vulnerability.
CVE-2000-1077 affects iPlanet Web Server version 4.x.
Yes, CVE-2000-1077 can be exploited remotely by attackers using specially crafted filenames containing the .shtml extension.
CVE-2000-1077 is a buffer overflow vulnerability that can allow remote attackers to execute arbitrary commands.