CVE-2001-0892
https://notcve.org/view.php?id=CVE-2001-0892
Acme Thttpd Secure Webserver before 2.22, with the chroot option enabled, allows remote attackers to view sensitive files under the document root (such as .htpasswd) via a GET request with a trailing /. • http://marc.info/?l=bugtraq&m=100568999726036&w=2 http://www.acme.com/software/thttpd • CWE-668: Exposure of Resource to Wrong Sphere •
CVE-2000-0900
https://notcve.org/view.php?id=CVE-2000-0900
Directory traversal vulnerability in ssi CGI program in thttpd 2.19 and earlier allows remote attackers to read arbitrary files via a "%2e%2e" string, a variation of the .. (dot dot) attack. • ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:73.thttpd.asc http://archives.neohapsis.com/archives/bugtraq/2000-10/0025.html http://www.securityfocus.com/bid/1737 https://exchange.xforce.ibmcloud.com/vulnerabilities/5313 •
CVE-2000-0359
https://notcve.org/view.php?id=CVE-2000-0359
Buffer overflow in Trivial HTTP (THTTPd) allows remote attackers to cause a denial of service or execute arbitrary commands via a long If-Modified-Since header. • http://archives.neohapsis.com/archives/bugtraq/1626.html http://www.novell.com/linux/security/advisories/suse_security_announce_30.html http://www.securityfocus.com/bid/1248 •