VulnerabilityModified
CVE-2001-0250
The Web Publishing feature in Netscape Enterprise Server 4.x and earlier allows remote attackers to list arbitrary directories under the web server root via the INDEX command.
MEDIUM 5.0EPSS 3.42%
Does this matter?
Lower severity and a low EPSS score (3.42%). Track it; it rarely justifies an emergency change on its own.
Description
The Web Publishing feature in Netscape Enterprise Server 4.x and earlier allows remote attackers to list arbitrary directories under the web server root via the INDEX command.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 3.42% probability · 88th percentile
- CISA KEV
- Not listed
- Affected
- netscape/enterprise server
- Source
- cve@mitre.org
References
- http://archives.neohapsis.com/archives/bugtraq/2001-01/0396.htmlExploit, Patch, Vendor Advisory
- http://www.securityfocus.com/bid/2285Exploit, Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5997
- http://archives.neohapsis.com/archives/bugtraq/2001-01/0396.htmlExploit, Patch, Vendor Advisory
- http://www.securityfocus.com/bid/2285Exploit, Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5997
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.