Record summary

CVE-2000-0396 has a selected CVSS score of 5.0; EIP currently links 1 catalogued exploit.

Description

The add.exe program in the Carello shopping cart software allows remote attackers to duplicate files on the server, which could allow the attacker to read source code for web scripts such as .ASP files.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBPacific Software Carello 1.2.1 - File Duplication / Source DisclosureExploitDB exploitby Cerberus Security TeamNot analyzed1 file
ExploitDB

PoC details

References

3