CVE-2000-0922EPSS p89.3%

CVE-2000-0922CVE-2000-0922

bytes_interactive / web_shopper

Description

Directory traversal vulnerability in Bytes Interactive Web Shopper shopping cart program (shopper.cgi) 2.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack on the newpage parameter.

Scoring

CVSS 5.0 ()
VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
EPSS3.66% probability of exploitation · percentile 89.3% · 2026-10-05T12:00:23Z
Last modified2026-09-23
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.