Arbitrary File Read Vulnerability in SawMill 5.0.21 CGI Program

Arbitrary File Read Vulnerability in SawMill 5.0.21 CGI Program

CVE-2000-0588 · MEDIUM Severity

AV:N/AC:L/AU:N/C:P/I:N/A:N

SawMill 5.0.21 CGI program allows remote attackers to read the first line of arbitrary files by listing the file in the rfcf parameter, whose contents SawMill attempts to parse as configuration commands.

Learn more about our Web Application Penetration Testing UK.