Sploitus

CVE-2000-0900

No indexed exploits for CVE-2000-0900 yet

Directory traversal vulnerability in ssi CGI program in thttpd 2.19 and earlier allows remote attackers to read arbitrary files via a "%2e%2e" string, a variation of the .. (dot dot) attack.

Affected products
Thttpd
Acme Labs Thttpd
= 2.16, 2.17, 2.18, 2.19
CVSS 2.0
7.5 HIGH
EPSS
2.0% (79th percentile)
NVD status
Modified
Published
2001-01-22
CVE-2000-0900 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2000-0900 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2000-0900 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.