Vulnerability Name: | CVE-2000-0869 (CCN-5204) | ||||||||
Assigned: | 2000-09-07 | ||||||||
Published: | 2000-09-07 | ||||||||
Updated: | 2017-10-10 | ||||||||
Summary: | The default configuration of Apache 1.3.12 in SuSE Linux 6.4 enables WebDAV, which allows remote attackers to list arbitrary directories via the PROPFIND HTTP request method. | ||||||||
CVSS v3 Severity: | 4.0 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)
| ||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Obtain Information | ||||||||
References: | Source: SUSE Type: Vendor Advisory 20000907 Source: MITRE Type: CNA CVE-2000-0869 Source: CCN Type: SuSE Security Announcement, September 7th, 2000 apache Source: ATSTAKE Type: Vendor Advisory A090700-3 Source: CCN Type: OSVDB ID: 404 Apache HTTP Server on SuSE Linux WebDAV PROPFIND Arbitrary Directory Listing Source: BID Type: Exploit, Patch, Vendor Advisory 1656 Source: CCN Type: BID-1656 SuSE Apache WebDAV Directory Listings Vulnerability Source: CCN Type: @stake, Inc. Security Advisory A090700-3 SuSE Apache WebDAV Directory Listings Source: XF Type: UNKNOWN apache-webdav-directory-listings(5204) Source: XF Type: UNKNOWN apache-webdav-directory-listings(5204) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration 2: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |