5
CVE-2002-1042
- EPSS 8.58%
- Published 04.10.2002 04:00:00
- Last modified 03.04.2025 01:03:51
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
Directory traversal vulnerability in search engine for iPlanet web server 6.0 SP2 and 4.1 SP9, and Netscape Enterprise Server 3.6, when running on Windows platforms, allows remote attackers to read arbitrary files via ..\ (dot-dot backslash) sequences in the NS-query-pat parameter.
Data is provided by the National Vulnerability Database (NVD)
Netscape ≫ Enterprise Server Version3.6
Sun ≫ Iplanet Web Server Version4.1
Sun ≫ Iplanet Web Server Version4.1 Updatesp1
Sun ≫ Iplanet Web Server Version4.1 Updatesp1 Editionenterprise
Sun ≫ Iplanet Web Server Version4.1 Updatesp10
Sun ≫ Iplanet Web Server Version4.1 Updatesp10 Editionenterprise
Sun ≫ Iplanet Web Server Version4.1 Updatesp2
Sun ≫ Iplanet Web Server Version4.1 Updatesp2 Editionenterprise
Sun ≫ Iplanet Web Server Version4.1 Updatesp3
Sun ≫ Iplanet Web Server Version4.1 Updatesp3 Editionenterprise
Sun ≫ Iplanet Web Server Version4.1 Updatesp4
Sun ≫ Iplanet Web Server Version4.1 Updatesp4 Editionenterprise
Sun ≫ Iplanet Web Server Version4.1 Updatesp5
Sun ≫ Iplanet Web Server Version4.1 Updatesp5 Editionenterprise
Sun ≫ Iplanet Web Server Version4.1 Updatesp6
Sun ≫ Iplanet Web Server Version4.1 Updatesp6 Editionenterprise
Sun ≫ Iplanet Web Server Version4.1 Updatesp7
Sun ≫ Iplanet Web Server Version4.1 Updatesp7 Editionenterprise
Sun ≫ Iplanet Web Server Version4.1 Updatesp8
Sun ≫ Iplanet Web Server Version4.1 Updatesp8 Editionenterprise
Sun ≫ Iplanet Web Server Version4.1 Updatesp9
Sun ≫ Iplanet Web Server Version4.1 Updatesp9 Editionenterprise
Sun ≫ One Application Server Version6.0
Sun ≫ One Application Server Version6.0 Updatesp1
Sun ≫ One Application Server Version6.0 Updatesp2
Sun ≫ One Web Server Version6.0 Updatesp3
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 8.58% | 0.92 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|