CyberSec.Space Logo
返回 CVE 浏览器

CVE-2000-0810

HIGH
7.5
CVSS Severity Score
EPSS Score0.0520%
EPSS Percentile0.26th
Published2000年12月19日
Last Modified2026年4月16日

Vulnerability Description

Auction Weaver 1.0 through 1.04 does not properly validate the names of form fields, which allows remote attackers to delete arbitrary files and directories via a .. (dot dot) attack.

Affected Platforms (CPE)

📦
Cgi Script Center

Auction Weaver

= 1.0
📦
Cgi Script Center

Auction Weaver

= 1.01
📦
Cgi Script Center

Auction Weaver

= 1.02
📦
Cgi Script Center

Auction Weaver

= 1.03
📦
Cgi Script Center

Auction Weaver

= 1.04

References & Advisories

相关漏洞威胁