Back to Database
Status published
Medium
CVE-2000-0208
The htdig (ht://Dig) CGI program htsearch allows remote attackers to...
Vulnerability Description
The htdig (ht://Dig) CGI program htsearch allows remote attackers to read arbitrary files by enclosing the file name with backticks (`) in parameters to htsearch.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2000-0208
Credits & Attribution
No credits recorded in the NVD database.
References
More from htdig
View All →CVE-2007-6110
Cross-site scripting (XSS) vulnerability in htsearch in htdig 3.2.0b6 allows...
Medium
4.3
CVE-2005-0085
Cross-site scripting (XSS) vulnerability in ht://dig (htdig) before 3.1.6-r7 allows...
Medium
6.8
CVE-2002-2010
Cross-site scripting (XSS) vulnerability in htsearch.cgi in htdig (ht://Dig) 3.1.5,...
Medium
4.3
CVE-2001-0834
htsearch CGI program in htdig (ht://Dig) 3.1.5 and earlier allows...
Medium
6.4
Affected Vendor
htdig
View all reports →Affected Software
htdig
Vulnerable Versions:
3.1.1, 3.1.2, 3.1.3, 3.1.4, 3.2.0b1
Timeline
Official Publish:
April 10th, 2000
Last Modified:
August 8th, 2024
Added to House:
July 17th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.