Unrated severityNVD Advisory· Published Nov 14, 2000· Updated Apr 16, 2026
CVE-2000-0877
CVE-2000-0877
Description
mailform.pl CGI script in MailForm 2.0 allows remote attackers to read arbitrary files by specifying the file name in the XX-attach_file parameter, which MailForm then sends to the attacker.
Affected products
1- cpe:2.3:a:ranson_johnson:mailform:2.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- archives.neohapsis.com/archives/bugtraq/2000-09/0092.htmlnvdVendor Advisory
- www.securityfocus.com/bid/1670nvdVendor Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/5224nvd
News mentions
0No linked articles in our index yet.