CVE-2000-0912

MultiHTML - RCE

Title source: llm
STIX 2.1

Description

MultiHTML CGI script allows remote attackers to read arbitrary files and possibly execute arbitrary commands by specifying the file name to the "multi" parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Niels Heinen · textwebappscgi
https://www.exploit-db.com/exploits/22204

References (2)

Core 2
Core References
Vendor Advisory mailing-list x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2000-09/0146.html
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/5285

Scores

EPSS 0.0604
EPSS Percentile 90.8%

Details

Status published
Products (1)
jcs_web_works/multihtml
Published Dec 19, 2000
Tracked Since Feb 18, 2026