CVE-2000-0869 EXPLOIT
5.0
MEDIUM · CVSS 2.0 · EPSS 51% (pctl 99)
Patch early
A public exploit exists.
Description
The default configuration of Apache 1.3.12 in SuSE Linux 6.4 enables WebDAV, which allows remote attackers to list arbitrary directories via the PROPFIND HTTP request method.
Scoring
| CVSS | 5.0 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
| EPSS | 50.95% — more likely to be exploited than 99% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2000-11-14 |
| Last modified | 2026-06-16 |
Affected (2)
| Vendor | Product |
|---|---|
| apache | http server |
| suse | suse linux |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Apache 1.3.12 - WebDAV Directory Listings | 2000-09-07 |
References
- http://archives.neohapsis.com/archives/linux/suse/2000-q3/0906.html
- http://www.atstake.com/research/advisories/2000/a090700-3.txt
- http://www.securityfocus.com/bid/1656
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5204
- http://archives.neohapsis.com/archives/linux/suse/2000-q3/0906.html
- http://www.atstake.com/research/advisories/2000/a090700-3.txt
- http://www.securityfocus.com/bid/1656
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5204
→ the Explorer · watch your stack · NVD