Lucene search

K
cve[email protected]CVE-2002-0934
HistoryOct 04, 2002 - 4:00 a.m.

CVE-2002-0934

2002-10-0404:00:00
web.nvd.nist.gov
18
jon hedley
alienform2
directory traversal
remote attackers
arbitrary files
security vulnerability

6.4 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:P/A:N

9.4 High

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

71.7%

Directory traversal vulnerability in Jon Hedley AlienForm2 (typically installed as af.cgi or alienform.cgi) allows remote attackers to read or modify arbitrary files via an illegal character in the middle of a … (dot dot) sequence in the parameters (1) _browser_out or (2) _out_file.

Affected configurations

NVD
Node
jon_hedleyalienform2Match1.5

6.4 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:P/A:N

9.4 High

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

71.7%

Related for CVE-2002-0934