CVE-2000-0922
טרם דורגה
תיאור (מקור, אנגלית)
Directory traversal vulnerability in Bytes Interactive Web Shopper shopping cart program (shopper.cgi) 2.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack on the newpage parameter.
מדדים
- EPSS — סבירות ניצול
- 4% (אחוזון 100) נכון ל-23/9/2026
מוצרים מושפעים
bytes_interactive: web shopper
קישורים
- http://www.securityfocus.com/bid/1776 PatchVendor Advisory
- http://www.securityfocus.com/bid/1776 PatchVendor Advisory
- http://archives.neohapsis.com/archives/bugtraq/2000-10/0120.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5351
- http://archives.neohapsis.com/archives/bugtraq/2000-10/0120.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5351