CVE-2000-1092

EZshopper <3.0,2.0 - Path Traversal

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2000-1092. PoCs published by Nsfocus.

AI-analyzed exploit summary The exploit describes a directory traversal vulnerability in EZShopper's loadpage.cgi, allowing remote attackers to read arbitrary files by manipulating the URL. It includes examples for both v2.0 and v3.0, demonstrating path traversal sequences to access sensitive files like /etc/passwd.

Description

loadpage.cgi CGI program in EZshopper 3.0 and 2.0 allows remote attackers to list and read files in the EZshopper data directory by inserting a "/" in front of the target filename in the "file" parameter.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Nsfocus · textremotemultiple
https://www.exploit-db.com/exploits/20507

The exploit describes a directory traversal vulnerability in EZShopper's loadpage.cgi, allowing remote attackers to read arbitrary files by manipulating the URL. It includes examples for both v2.0 and v3.0, demonstrating path traversal sequences to access sensitive files like /etc/passwd.

Classification
Writeup 90%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: EZShopper v2.0 and v3.0
No auth needed
Prerequisites: Access to the target web server · EZShopper installation with vulnerable loadpage.cgi
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/5740
Exploit, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/2109
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=97676270729984&w=2

Scores

EPSS 0.0749
EPSS Percentile 93.7%

Details

Status published
Products (2)
alex_heiphetz_group/ezshopper 2.0
alex_heiphetz_group/ezshopper 3.0
Published Jan 09, 2001
Tracked Since Feb 18, 2026