Back

CVE-2000-1176

Directory traversal vulnerability in YaBB search.pl CGI script allows remote attackers to read arbitrary files via a .. (dot dot) attack in the "catsearch" form field.

Published: Jan 9, 2001 Modified: Apr 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
yabb yabb 2000-09-11

GitHub Security Advisory GHSA-x4gh-8p78-vxxx

Directory traversal vulnerability in YaBB search.pl CGI script allows remote attackers to read...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 2.37%

Top 15% most likely to be exploited

Threat Score 30.7 / 100

Data Sources

NVD EPSS GitHub