Security Advisory

CVE-2000-0922

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2001-01-22 05:00:00
Last updated 2024-08-08 05:37:31
Assigner mitre
State PUBLISHED

Description

Directory traversal vulnerability in Bytes Interactive Web Shopper shopping cart program (shopper.cgi) 2.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack on the newpage parameter.