CVE-2002-0661
Directory traversal vulnerability in Apache 2.0 through 2.0.39 on Windows, OS2, and Netware allows remote attackers to read arbitrary files and execute commands via .. (dot dot) sequences containing \ (backslash) characters.
- Affected products
- Apache, Apache Http Server
- Apache Http Server
- = 2.0, 2.0.28, 2.0.32, 2.0.34, 2.0.35, 2.0.36, 2.0.37, 2.0.38, 2.0.39
- Fix
- Available
- CVSS 2.0
- 7.5 HIGH
- EPSS
- 69.7% (99th percentile)
- NVD status
- Modified
- Published
- 2002-08-10
CVE-2002-0661 at NVD
1 known exploit for CVE-2002-0661
Proof-of-concept code and exploit modules indexed by Sploitus