CVE-2000-0411

CVSS 2.0 Score 5 of 10 (medium)

Details

Published May 10, 2000
Updated: Nov 20, 2024

Summary

CVE-2000-0411 is a vulnerability affecting Matt Wright's FormMail CGI script. An attacker can exploit this weakness by manipulating the env_report parameter in a malicious request. As a result, the script discloses environmental variables to the attacker, potentially revealing sensitive information and compromising system security. This issue can lead to information disclosure and potentially more serious consequences if the disclosed data includes authentication credentials or other sensitive information. To mitigate this risk, it is recommended to update the FormMail script to a version that addresses this vulnerability or implement alternative methods to secure environmental variable handling.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share