PoC Index

CVE-2000-0412

HIGH 7.5EPSS 2.7%

The gnapster and knapster clients for Napster do not properly restrict access only to MP3 files, which allows remote attackers to read arbitrary files from the client by specifying the full pathname for the file.

CVSS v2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
2.75% chance of exploitation in the next 30 days, 85th percentile
Published
2000-06-15
Updated
2024-08-08

ExploitDB entries (1)

References

Related