CVE-2001-0250 EXPLOIT
5.0
MEDIUM · CVSS 2.0 · EPSS 3.4% (pctl 89)
Patch early
A public exploit exists.
Description
The Web Publishing feature in Netscape Enterprise Server 4.x and earlier allows remote attackers to list arbitrary directories under the web server root via the INDEX command.
Scoring
| CVSS | 5.0 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
| EPSS | 3.42% — more likely to be exploited than 89% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2001-06-02 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| netscape | enterprise server |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Netscape Enterprise Server 3.0/4.0 - 'Index' Disclosure | 2001-01-24 |
References
- http://archives.neohapsis.com/archives/bugtraq/2001-01/0396.html
- http://www.securityfocus.com/bid/2285
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5997
- http://archives.neohapsis.com/archives/bugtraq/2001-01/0396.html
- http://www.securityfocus.com/bid/2285
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5997
→ the Explorer · watch your stack · NVD