CVE-2000-0739
NAI Net Tools PKI Server 1.0 - Directory Traversal via HTTPS Request
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2000-0739. PoCs published by Juliano Rizzo.
AI-analyzed exploit summary The exploit describes a directory traversal vulnerability in Network Associates Net Tools PKI Server's Enrollment Web Server (strong.exe) on port 444, allowing unauthenticated remote attackers to read arbitrary files by traversing outside the web root directory.
Description
Directory traversal vulnerability in strong.exe program in NAI Net Tools PKI server 1.0 before HotFix 3 allows remote attackers to read arbitrary files via a .. (dot dot) attack in an HTTPS request to the enrollment server.
Exploits (1)
The exploit describes a directory traversal vulnerability in Network Associates Net Tools PKI Server's Enrollment Web Server (strong.exe) on port 444, allowing unauthenticated remote attackers to read arbitrary files by traversing outside the web root directory.