peter bassill · operator
$ cve CVE-2001-0250 JSON

CVE-2001-0250 EXPLOIT

5.0
MEDIUM · CVSS 2.0 · EPSS 3.4% (pctl 89)

Patch early

A public exploit exists.

Description

The Web Publishing feature in Netscape Enterprise Server 4.x and earlier allows remote attackers to list arbitrary directories under the web server root via the INDEX command.

Scoring

CVSS5.0 (MEDIUM, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
EPSS3.42% — more likely to be exploited than 89% of all CVEs
On CISA KEVno
Public exploityes
Published2001-06-02
Last modified2026-06-16

Affected (1)

VendorProduct
netscapeenterprise server

Public exploits

SourceTitleDate
exploit-dbNetscape Enterprise Server 3.0/4.0 - 'Index' Disclosure2001-01-24

References

→ the Explorer  ·  watch your stack  ·  NVD