← לוח פגיעויות

CVE-2000-0922

טרם דורגה

טרם דורג — בהתאם למדיניות NVD מאפריל 2026, רוב ה-CVE אינם מנותחים מיידית. ציון EPSS (אם קיים) עדיין מוצג.

תיאור (מקור, אנגלית)

Directory traversal vulnerability in Bytes Interactive Web Shopper shopping cart program (shopper.cgi) 2.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack on the newpage parameter.

מדדים

EPSS — סבירות ניצול
4% (אחוזון 100) נכון ל-23/9/2026

מוצרים מושפעים

bytes_interactive: web shopper

קישורים