CVE-2000-1176: High severity Yabb Yabb vulnerability
Published Dec 19, 2000
·Updated
Directory traversal vulnerability in YaBB search.pl CGI script allows remote attackers to read arbitrary files via a .. (dot dot) attack in the "catsearch" form field.
Affected Software
1 affected component
Yabb Yabb=2000-09-11
Event History
Dec 19, 2000
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-1176?
CVE-2000-1176 is considered a high severity vulnerability due to its potential for unauthorized file access.
2
How do I fix CVE-2000-1176?
To fix CVE-2000-1176, update the YaBB CGI script to a version that sanitizes user input and prevents directory traversal vulnerabilities.
3
What systems are affected by CVE-2000-1176?
CVE-2000-1176 affects the YaBB software version 2000-09-11.
4
What type of attack is associated with CVE-2000-1176?
CVE-2000-1176 is associated with a directory traversal attack that allows attackers to access arbitrary files on the server.
5
Who can exploit CVE-2000-1176?
CVE-2000-1176 can be exploited by remote attackers who can manipulate the 'catsearch' form field.