CVE-2000-0396
CVSS 2.0 Score 5 of 10 (medium)
Details
Summary
CVE-2000-0396 is a vulnerability affecting the add.exe program in the Carello shopping cart software. This issue enables remote attackers to duplicate files on the server, potentially granting them access to sensitive information. Specifically, the vulnerability could allow attackers to read the source code of web scripts, such as .ASP files, which could lead to serious security consequences. By exploiting this weakness, an attacker may gain unauthorized access to confidential data or even take control of the affected system. The vulnerability poses a significant risk to organizations using the Carello shopping cart software and requires immediate attention and remediation.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.