CVE-2000-0436

CVSS 2.0 Score 5 of 10 (medium)

Details

Published May 19, 2000
Updated: Nov 20, 2024

Summary

CVE-2000-0436 is a vulnerability affecting MetaProducts Offline Explorer version 1.2 and earlier. This issue enables remote attackers to bypass security restrictions and access arbitrary files on a targeted system through a ".." (dot dot) attack. This vulnerability poses a significant risk, as it grants unauthorized access to sensitive information stored on the affected system. Attackers can exploit this flaw to gain privileged access, potentially leading to further compromise of the system. It is recommended that users of Offline Explorer update to a patched version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share