docs.iplanet.comConfirmation
http://docs.iplanet.com/docs/manuals/pubx/2.5.2_Relnotes.html CVE-2000-1196
Netscape PublishingXPert 2.0/2.2/2.5 - Local File Reading
Record summary
CVE-2000-1196 has a selected CVSS score of 5.0; EIP currently links 1 catalogued exploit.
Description
PSCOErrPage.htm in Netscape PublishingXpert 2.5 before SP2 allows remote attackers to read arbitrary files by specifying the target file in the errPagePath parameter.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBNetscape PublishingXPert 2.0/2.2/2.5 - Local File ReadingExploitDB exploitby \x00\x00Not analyzed1 file
References
4packetstormsecurity.org
http://packetstormsecurity.org/0004-exploits/ooo1.txt publishingxpert-pscoerrpage-url(7362)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/7362 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2000-1196