7.5
CVSSv2

CVE-2000-0900

Published: 19/12/2000 Updated: 10/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Directory traversal vulnerability in ssi CGI program in thttpd 2.19 and previous versions allows remote malicious users to read arbitrary files via a "%2e%2e" string, a variation of the .. (dot dot) attack.

Vulnerable Product Search on Vulmon Subscribe to Product

acme labs thttpd 2.16

acme labs thttpd 2.17

acme labs thttpd 2.18

acme labs thttpd 2.19