7.5
CVSSv2

CVE-2002-0897

Published: 04/10/2002 Updated: 05/09/2008
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

LocalWEB2000 2.1.0 web server allows remote malicious users to bypass access restrictions for restricted files via a URL that contains the "/./" directory.

Vulnerable Product Search on Vulmon Subscribe to Product

intranet-server localweb2000 2.1.0 standard version

Exploits

source: wwwsecurityfocuscom/bid/4820/info A vulnerability exists in LocalWEB2000 related to content password protection It is possible to have LocalWEB2000 treat files as unprotected by requesting them as files within the '' (current) directory If the file server/filetxt is set to be password protected, the protection will be b ...