20010124 [SAFER] Security Bulletin 010124.EXP.1.11mailing list
http://archives.neohapsis.com/archives/bugtraq/2001-01/0396.html CVE-2001-0250
Netscape Enterprise Server 3.0/4.0 - 'Index' Disclosure
Record summary
CVE-2001-0250 has a selected CVSS score of 5.0; EIP currently links 1 catalogued exploit.
Description
The Web Publishing feature in Netscape Enterprise Server 4.x and earlier allows remote attackers to list arbitrary directories under the web server root via the INDEX command.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBNetscape Enterprise Server 3.0/4.0 - 'Index' DisclosureExploitDB exploitby Security Research TeamNot analyzed1 file
References
42285vdb entry
http://www.securityfocus.com/bid/2285 netscape-enterprise-list-directories(5997)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/5997 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2001-0250