BlackKite: Home
Menu

PUBLISHED DATE: October 20, 2000CVE-2000-0710:
The shtml.exe component of...

CVSS:
5
EPSS:
5431.00%
Exploitability:
10
In KEV:
No
Description

The shtml.exe component of Microsoft FrontPage 2000 Server Extensions 1.1 allows remote attackers to determine the physical path of the server components by requesting an invalid URL whose name includes a standard DOS device name.

Products
Questions to Ask Vendors
  1. Can you confirm whether your systems are affected by CVE-2000-0710, and if so, what steps are you currently taking to mitigate this vulnerability?
  2. What is your estimated timeline for fully resolving CVE-2000-0710 in your products or services, and how will you communicate updates on this issue to us as your customer?
Recommended Actions
References

Ready to get results you can trust?