Lucene search

K
cveMitreCVE-1999-0985
HistoryFeb 04, 2000 - 5:00 a.m.

CVE-1999-0985

2000-02-0405:00:00
mitre
web.nvd.nist.gov
28
cve-1999-0985
cc whois program
remote command execution
shell metacharacters
nvd.

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.6

Confidence

Low

EPSS

0.055

Percentile

93.2%

CC Whois program whois.cgi allows remote attackers to execute commands via shell metacharacters in the domain entry.

Affected configurations

Nvd
Node
cccc_whoisMatch1.0
VendorProductVersionCPE
cccc_whois1.0cpe:2.3:a:cc:cc_whois:1.0:*:*:*:*:*:*:*

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.6

Confidence

Low

EPSS

0.055

Percentile

93.2%

Related for CVE-1999-0985