s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

CVE-2000-0176 medium

📛 Threat Title

CVE-2000-0176

Category: vulnerability Published: Source updated: First seen: Last updated: Source: NVD Recent CVEs

Description

The default configuration of Serv-U 2.5d and earlier allows remote attackers to determine the real pathname of the server by requesting a URL for a directory or file that does not exist.

Indicators of Compromise (0)

No indicators of compromise on this threat.

References (3)

  • cve@mitre.org NVD Recent CVEs
  • cve@mitre.org NVD Recent CVEs
  • NVD detail: CVE-2000-0176 NVD Recent CVEs

    The default configuration of Serv-U 2.5d and earlier allows remote attackers to determine the real pathname of the server by requesting a URL for a directory or file that does not exist.

Remediations (10)

  • web:blogs.oracle.com

    For more information about the Critical Patch Update program, see the security vulnerability remediation practices page located on the Oracle Trust Center.

  • web:heimdalsecurity.com

    Explore six essential patch management best practices for 2026 to keep your systems secure, up to date, and protected from vulnerabilities.

  • web:nvlpubs.nist.gov

    The third version, SP 800-40, Revision 3, Guide to Enterprise Patch Management Technologies (2013), was written under the assumption that readers already understood the basics of patch management and that what they most needed help with was implementing, configuring, securing, and using enterprise patch management technologies.

  • web:portal.msrc.microsoft.com

    The Security Update Guide provides information on the latest Microsoft security updates, helping users understand and address potential vulnerabilities effectively.

  • web:support.esri.com

    Refer to the Issues Addressed with this Patch section for details about BUG-000171492. The new patch when shown as available in the ArcGIS Enterprise Patch Notification tool, is listed as ArcGIS Server Security 2025 Update 1 Patch with a release date of April 17, 2025; once installed, it is listed as ArcGIS Server Security 2025 Update 1 Patch B.

  • web:www.action1.com

    Patch Tuesday January 2026 Updates - Vulnerability Digest from Action1 This digest explains the most serious vulnerabilities in popular Windows software that have been patched over the past month. For even more information, join our next Patch Tuesday webinar and visit our Patch Tuesday Watch page.

  • web:www.controlup.com

    OS Patch Management ControlUp makes Windows patching easy with auto-update, auto-scanning, and auto- remediation . Vulnerability management: Scan and remediate operating systems to ensure everyone is on the same service pack and lower the security risk.

  • web:www.linkedin.com

    Oracle has released its January 2026 Critical Patch Update (CPU), a wide-ranging security bulletin that addresses 337 newly identified vulnerabilities across a broad spectrum of its enterprise ...

  • web:www.tenable.com

    Oracle addresses 241 CVEs in its April Critical Patch Update, the second quarterly update of 2026 with 481 patches, including 34 critical updates.

  • web:zecurit.com

    Get the complete breakdown of Microsoft's May 2026 Patch Tuesday. We analyze the latest security updates and all critical CVEs .

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.