Vulnerabilities > CVE-2000-1177 - CGI vulnerability in BB4 Big Brother

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
bb4
exploit available

Summary

bb-hist.sh, bb-histlog.sh, bb-hostsvc.sh, bb-rep.sh, bb-replog.sh, and bb-ack.sh in Big Brother (BB) before 1.5d3 allows remote attackers to determine the existence of files and user ID's by specifying the target file in the HISTFILE parameter.

Vulnerable Configurations

Part Description Count
Application
Bb4
1

Exploit-Db

descriptionBB4 Big Brother Network Monitor 1.5 d2 bb-hist.sh HISTFILE Parameter File Existence Disclosure. CVE-2000-1177. Remote exploit for unix platform
idEDB-ID:20413
last seen2016-02-02
modified2000-11-20
published2000-11-20
reporterf8 Research Labs
sourcehttps://www.exploit-db.com/download/20413/
titleBB4 Big Brother Network Monitor 1.5 d2 bb-hist.sh HISTFILE Parameter File Existence Disclosure