CVE-2000-1176

YaBB - Directory Traversal via Search.pl Catsearch Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2000-1176. PoCs published by rpc.

AI-analyzed exploit summary The exploit describes a directory traversal and command injection vulnerability in YaBB's search.pl script due to improper input validation in the open() function. An attacker can use '/../' sequences and shell commands to traverse directories and execute arbitrary commands.

Description

Directory traversal vulnerability in YaBB search.pl CGI script allows remote attackers to read arbitrary files via a .. (dot dot) attack in the "catsearch" form field.

Exploits (1)

exploitdb WRITEUP VERIFIED
by rpc · textremotecgi
https://www.exploit-db.com/exploits/20387

The exploit describes a directory traversal and command injection vulnerability in YaBB's search.pl script due to improper input validation in the open() function. An attacker can use '/../' sequences and shell commands to traverse directories and execute arbitrary commands.

Classification
Writeup 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: YaBB (Yet Another Bulletin Board)
No auth needed
Prerequisites: Access to the YaBB search functionality
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (2)

Core 2
Core References
Exploit, Vendor Advisory mailing-list x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2000-11/0110.html
Exploit, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/1921

Scores

EPSS 0.0572
EPSS Percentile 92.1%

Details

Status published
Products (1)
yabb/yabb 2000-09-11
Published Jan 09, 2001
Tracked Since Feb 18, 2026