PT-2000-1604 · Roxen · Roxen Web Server

Published

2000-07-21

·

Updated

2017-10-10

·

CVE-2000-0671

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Roxen web server versions prior to 2.0.69
Description The issue allows remote attackers to bypass access restrictions, list directory contents, and read source code by inserting a null character (%00) to the URL.
Recommendations For versions prior to 2.0.69, update to version 2.0.69 or later to resolve the issue.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2000-0671

Affected Products

Roxen Web Server