Skip to content
Noroxi

cgi-world records

4 published records for vendor cgi-world.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

      The weakness classes this vendor ships most often: where to look.

      CWE

      Attack profile

      All records

      4 records
      • pollit.cgi in Poll It 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the poll_options parameter.

        CriticalCVSS 10.0No exploitEPSS 3%

        cgi-world · poll itDec 11, 2000

      • CVE-2000-0590
        32Monitor

        Poll It 2.0 CGI script allows remote attackers to read arbitrary files by specifying the file name in the data_dir parameter.

        HighCVSS 7.5Proof of conceptEPSS 7%

        cgi-world · poll itJul 4, 2000

      • CVE-2000-1069
        26Monitor

        pollit.cgi in Poll It 2.01 and earlier allows remote attackers to access administrative functions without knowing the real password by speci

        MediumCVSS 6.4Proof of conceptEPSS 2%

        cgi-world · poll itDec 11, 2000

      • CVE-2000-1070
        20Monitor

        pollit.cgi in Poll It 2.01 and earlier uses data files that are located under the web document root, which allows remote attackers to access

        MediumCVSS 5.0No exploitEPSS 1%

        cgi-world · poll itDec 11, 2000