CVE-2000-0920: Medium severity Boa Boa Webserver vulnerability
Directory traversal vulnerability in BOA web server 0.94.8.2 and earlier allows remote attackers to read arbitrary files via a modified .. (dot dot) attack in the GET HTTP request that uses a "%2E" instead of a "."
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2000-0920?
CVE-2000-0920 is considered a high severity vulnerability due to its potential for remote exploitation and unauthorized access to sensitive files.
What software is affected by CVE-2000-0920?
The vulnerability affects BOA web server version 0.94.8.2 and earlier versions.
How do I fix CVE-2000-0920?
To fix CVE-2000-0920, upgrade the BOA web server to a version later than 0.94.8.2.
What type of attack is associated with CVE-2000-0920?
CVE-2000-0920 is associated with a directory traversal attack that allows attackers to access arbitrary files on the server.
Can CVE-2000-0920 lead to data exposure?
Yes, CVE-2000-0920 can lead to unauthorized data exposure, allowing attackers to read sensitive files on the server.