CVE-2000-0720
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 6.2%
from disclosure to weapon0 days
Published on NVDMay 7
1st PoCAug 29
exploitation probability
6.2%top 7% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
news.cgi in GWScripts News Publisher does not properly authenticate requests to add an author to the author index, which allows remote attackers to add new authors by directly posting an HTTP request to the new.cgi program with an addAuthor parameter, and setting the Referer to the news.cgi program.
Affected products
n/a · n/apublic PoCs found — 1✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/20183⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.