CyberSec.Space Logo
CVEブラウザに戻る

CVE-2000-0810

HIGH
7.5
CVSS Severity Score
EPSS Score0.0520%
EPSS Percentile0.26th
Published2000年12月19日
Last Modified2026年4月16日

Vulnerability Description

Auction Weaver 1.0 through 1.04 does not properly validate the names of form fields, which allows remote attackers to delete arbitrary files and directories via a .. (dot dot) attack.

Affected Platforms (CPE)

📦
Cgi Script Center

Auction Weaver

= 1.0
📦
Cgi Script Center

Auction Weaver

= 1.01
📦
Cgi Script Center

Auction Weaver

= 1.02
📦
Cgi Script Center

Auction Weaver

= 1.03
📦
Cgi Script Center

Auction Weaver

= 1.04

References & Advisories

関連する脆弱性情報