Vulnerability Name: | CVE-2000-0906 (CCN-5334) | ||||||||
Assigned: | 2000-10-02 | ||||||||
Published: | 2000-10-02 | ||||||||
Updated: | 2017-12-19 | ||||||||
Summary: | Directory traversal vulnerability in Moreover.com cached_feed.cgi script version 4.July.00 allows remote attackers to read arbitrary files via a .. (dot dot) attack on the category or format parameters. | ||||||||
CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)
| ||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: BUGTRAQ Type: Exploit, Patch, Vendor Advisory 20001002 Moreover Cached_Feed CGI Vulnerability Source: CCN Type: BugTraq Mailing List, Mon, Oct 02 2000 - 12:20:21 CDT Moreover Cached_Feed CGI Vulnerability Source: MITRE Type: CNA CVE-2000-0906 Source: CCN Type: Moreover.com Web site Local caching of Moreover newsfeeds Source: CCN Type: OSVDB ID: 7695 Moreover.com cached_feed.cgi Script Arbitrary File Access Source: BID Type: Exploit, Patch, Vendor Advisory 1762 Source: CCN Type: BID-1762 Moreover.com CGI File Disclosure Vulnerability Source: XF Type: UNKNOWN moreover-cgi-dir-traverse(5334) Source: XF Type: UNKNOWN moreover-cgi-dir-traverse(5334) | ||||||||
Vulnerable Configuration: | Configuration 1:![]() | ||||||||
BACK |