CyberSec.Space Logo
Back to CVE Browser

CVE-2000-0810

HIGH
7.5
CVSS Severity Score
EPSS Score0.0520%
EPSS Percentile0.26th
PublishedDec 19, 2000
Last ModifiedApr 16, 2026

Vulnerability Description

Auction Weaver 1.0 through 1.04 does not properly validate the names of form fields, which allows remote attackers to delete arbitrary files and directories via a .. (dot dot) attack.

Affected Platforms (CPE)

πŸ“¦
Cgi Script Center

Auction Weaver

= 1.0
πŸ“¦
Cgi Script Center

Auction Weaver

= 1.01
πŸ“¦
Cgi Script Center

Auction Weaver

= 1.02
πŸ“¦
Cgi Script Center

Auction Weaver

= 1.03
πŸ“¦
Cgi Script Center

Auction Weaver

= 1.04

References & Advisories

Related Vulnerabilities