VYPR
Unrated severityNVD Advisory· Published Nov 14, 2000· Updated Jun 16, 2026

CVE-2000-0850

CVE-2000-0850

Description

Netegrity SiteMinder before 4.11 allows remote attackers to bypass its authentication mechanism by appending "$/FILENAME.ext" (where ext is .ccc, .class, or .jpg) to the requested URL.

Affected products

3
  • Ca/Siteminder3 versions
    cpe:2.3:a:netegrity:siteminder:3.6:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:netegrity:siteminder:3.6:*:*:*:*:*:*:*
    • cpe:2.3:a:netegrity:siteminder:4.0:*:*:*:*:*:*:*
    • (no CPE)range: <4.11

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.