CVE-2001-0892

Acme Thttpd Secure Webserver before 2.22, with the chroot option enabled, allows remote attackers to view sensitive files under the document root (such as .htpasswd) via a GET request with a trailing /.

Scoring

CVSS base score
0.03
EPSS probability
0.53%
Published
2002-02-02
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs