PT-2000-1853 · Kootenay Web · Kootenay Web Kw Whois

Published

2000-12-19

·

Updated

2017-10-10

·

CVE-2000-0941

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Kootenay Web KW Whois version 1.0
Description The issue allows remote attackers to execute arbitrary commands via shell metacharacters in the whois parameter.
Recommendations For version 1.0, restrict access to the whois parameter to minimize the risk of exploitation. Avoid using the whois parameter until the issue is resolved.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2000-0941

Affected Products

Kootenay Web Kw Whois