5
CVSSv2

CVE-2000-0505

Published: 31/05/2000 Updated: 07/11/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The Apache 1.3.x HTTP server for Windows platforms allows remote malicious users to list directory contents by requesting a URL containing a large number of / characters.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apache http server 1.3.9

apache http server 1.3.11

ibm http server 1.3.3

ibm http server 1.3.6.2

apache http server 1.3.6

apache http server 1.3.12

Exploits

source: wwwsecurityfocuscom/bid/1284/info Apache HTTP Server 13x (win32) allows people to get a directory listing of a directory, if it is enabled in the config, even if an index file is present that would normally be displayed instead This can be achieved by sending a number of "/" characters appended to an HTTP request to the server ...