ZeroHour

CVE-2000-0900

PoC
CVSS 2.0
7.5 high
EPSS
Published
()
Modified
Description

Directory traversal vulnerability in ssi CGI program in thttpd 2.19 and earlier allows remote attackers to read arbitrary files via a "%2e%2e" string, a variation of the .. (dot dot) attack.

Vendors
acme labs
Products
thttpd
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P

In the news

No ingested article mentions this CVE yet.