Search/CVE-2000-0911
CVE

CVE-2000-0911

IMP 2.2 and earlier allows attackers to read and delete arbitrary files by modifying the attachment_name hidden form variable, which causes IMP to send the file to the attacker as an attachment.

CVSS v3.1
EPSS
1.85%
probability of exploitation in 30 days
CISA KEV
Not listed
no confirmed exploitation reported
News coverage
0
sources referencing this CVE
Connections
1 relationships
Timeline
disclosure → media coverage
Dec 19, 2000
Disclosure — published as a CVE record. · last revised by NVD Apr 16, 2026