Directory traversal vulnerability in html_web_store.cgi and web_store.cgi CGI programs in eXtropia WebStore allows remote attackers to read arbitrary files via a .. (dot dot) attack on the page parameter.
References
| Link | Resource |
|---|---|
| http://www.securityfocus.com/bid/1774 | Exploit Patch Vendor Advisory |
| http://www.securityfocus.com/archive/1/138495 | |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/5347 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2000-12-10 21:00
Updated : 2017-10-09 18:29
NVD link : CVE-2000-1005
Mitre link : CVE-2000-1005
JSON object : View
CWE
Products Affected
extropia
- extropia_webstore


