PoC Index

CVE-2000-0884

HIGH 7.5EPSS 72.1%

IIS 4.0 and 5.0 allows remote attackers to read documents outside of the web root, and possibly execute arbitrary commands, via malformed URLs that contain UNICODE encoded characters, aka the "Web Server Folder Traversal" vulnerability.

CVSS v2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
72.07% chance of exploitation in the next 30 days, 99th percentile
Published
2001-01-22
Updated
2024-08-08

ExploitDB entries (8)

References

Related