CVE-2000-0180

CVSS 2.0 Score 5 of 10 (medium)

Details

Published Mar 14, 2000
Updated: Nov 20, 2024

Summary

CVE-2000-0180 is a vulnerability affecting the Sojourn search engine. An attacker can exploit this issue by using a ".." (dot dot) technique in a crafted search query, allowing them to read arbitrary files on the targeted system. This vulnerability poses a significant risk, as it grants unauthorized access to potentially sensitive information. The Sojourn search engine failed to properly sanitize user input, leading to this security weakness. Attackers could leverage this vulnerability to gain valuable insights or even execute further attacks. It is crucial for system administrators to patch or mitigate this vulnerability promptly to prevent potential data breaches.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share