CVE-2000-0185 describes an information disclosure vulnerability in RealNetworks RealServer and RealServer G2, where the software inadvertently reveals its internal IP address, even when configured for privacy. This medium-severity vulnerability (CVSS 5.0) has a low attack complexity and no authentication required, allowing an unauthenticated attacker to passively obtain sensitive network configuration details. While there is no evidence of active exploitation or Metasploit/Nuclei modules, an ExploitDB entry exists, and the CVE has minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
5.0CPE matchmatch criteria | cpe:2.3:a:realnetworks:realserver:5.0:*:*:*:*:*:*:* | ||
7.0CPE matchmatch criteria | cpe:2.3:a:realnetworks:realserver:7.0:*:*:*:*:*:*:* | ||
1.0CPE matchmatch criteria | cpe:2.3:a:realnetworks:realserver_g2:1.0:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:N/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.