5
CVSSv2

CVE-2002-0680

Published: 23/07/2002 Updated: 20/12/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Directory traversal vulnerability in GoAhead Web Server 2.1 allows remote malicious users to read arbitrary files via a URL with an encoded / (%5C) in a .. (dot dot) sequence. NOTE: it is highly likely that this candidate will be REJECTED because it has been reported to be a duplicate of CVE-2001-0228.

Vulnerable Product Search on Vulmon Subscribe to Product

orange software orange web server 2.1

goahead software goahead webserver 2.1.4

goahead software goahead webserver 2.1.5

goahead software goahead webserver 2.1.2

goahead software goahead webserver 2.1.3

goahead software goahead webserver 2.1.1

montavista software hard hat linux 1.0

Exploits

source: wwwsecurityfocuscom/bid/5197/info A vulnerability has been reported for GoAhead WebServer 21 Reportedly, it is possible to launch directory traversal attacks against GoAhead WebServer It is possible for remote attackers to access arbitrary files residing on a vulnerable host It has been reported that it is possible to exploit ...