First published: Fri Oct 20 2000(Updated: )
Directory traversal vulnerability in strong.exe program in NAI Net Tools PKI server 1.0 before HotFix 3 allows remote attackers to read arbitrary files via a .. (dot dot) attack in an HTTPS request to the enrollment server.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Network Associates Net Tools Pki Server | =1.0hotfix1 | |
Network Associates Net Tools Pki Server | =1.0hotfix2 | |
Network Associates Net Tools Pki Server | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0739 is considered to be a medium severity vulnerability due to the potential for unauthorized access to sensitive files.
To fix CVE-2000-0739, upgrade to a version of NAI Net Tools PKI server that includes HotFix 3 or later.
CVE-2000-0739 is associated with a directory traversal attack that exploits the strong.exe program.
CVE-2000-0739 affects versions 1.0, 1.0 hotfix 1, and 1.0 hotfix 2 of NAI Net Tools PKI server.
By exploiting CVE-2000-0739, attackers can read arbitrary files on the server, potentially compromising sensitive information.