5
CVSSv2

CVE-2002-0708

Published: 10/10/2002 Updated: 18/10/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Directory traversal vulnerability in the Web Reports Server for SurfControl SuperScout WebFilter allows remote malicious users to read arbitrary files via an HTTP request containing ... (triple dot) sequences.

Vulnerable Product Search on Vulmon Subscribe to Product

surfcontrol web filter 4.1

surfcontrol superscout web filter 3.0.3

surfcontrol web filter 4.0

surfcontrol superscout web filter 3.0

Exploits

source: wwwsecurityfocuscom/bid/5857/info SurfControl SuperScout WebFilter Reports Server is prone to a vulnerability which may allow remote attackers to disclose the contents of arbitrary files The Reports Server does not sufficiently filter triple-dot-slash (/) sequences from web requests As a result, an attacker may break out of ...