5
CVSSv2

CVE-2000-0925

Published: 19/12/2000 Updated: 10/10/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The default installation of SmartWin CyberOffice Shopping Cart 2 (aka CyberShop) installs the _private directory with world readable permissions, which allows remote malicious users to obtain sensitive information.

Vulnerable Product Search on Vulmon Subscribe to Product

smartwin technology cyberoffice shopping cart 2.0

Exploits

source: wwwsecurityfocuscom/bid/1734/info Smartwin Technology CyberOffice Shopping Cart is a shopping cart application for e-commerce enabled websites running Windows NT 40 or 2000 It is possible for a remote user to gain read access to the _private directory on a website running CyberOffice Shopping Cart 20 By default the _private d ...