CVE detail
CVE-2000-1100 — CVE-2000-1100
Published 2001-01-09 · Modified 2026-06-16 · Vendor trlinux · Product postaci_webmail · Source nvd
UNKNOWN
severity
CVSS-derived band
0.0571
EPSS probability
exploitation probability, 30d
92.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
The default configuration for PostACI webmail system installs the /includes/global.inc configuration file within the web root, which allows remote attackers to read sensitive information such as database usernames and passwords via a direct HTTP GET request.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References