VulnerabilityModified
CVE-2000-0528
Net Tools PKI Server does not properly restrict access to remote attackers when the XUDA template files do not contain absolute pathnames for other files.
MEDIUM 5.0EPSS 1.62%
Does this matter?
Lower severity and a low EPSS score (1.62%). Track it; it rarely justifies an emergency change on its own.
Description
Net Tools PKI Server does not properly restrict access to remote attackers when the XUDA template files do not contain absolute pathnames for other files.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
- EPSS
- 1.62% probability · 75th percentile
- CISA KEV
- Not listed
- Affected
- network associates/net tools pki server
- Source
- cve@mitre.org
References
- ftp://ftp.tis.com/gauntlet/hide/pki/hotfix.txt
- http://archives.neohapsis.com/archives/bugtraq/2000-06/0166.htmlPatch, Vendor Advisory
- http://www.osvdb.org/4353
- http://www.securityfocus.com/bid/1364Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/4743
- ftp://ftp.tis.com/gauntlet/hide/pki/hotfix.txt
- http://archives.neohapsis.com/archives/bugtraq/2000-06/0166.htmlPatch, Vendor Advisory
- http://www.osvdb.org/4353
- http://www.securityfocus.com/bid/1364Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/4743
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.