Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2002-1031

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2002-1031
Last Modified 05 Sep 2008 04:29:35
Published 04 Oct 2002 12:00:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact NONE NONE
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2002-1031

Summary

KeyFocus (KF) web server 1.0.2 allows remote attackers to list directories and read restricted files via an HTTP request containing a %00 (null) character.

Vulnerable Systems

Application

  • Key Focus Kf Web Server 1.0.2


References

BID - 5177

XF - kfwebserver-null-view-dir(9500)

CONFIRM - http://www.keyfocus.net/kfws/support/

BUGTRAQ - 20020707 KF Web Server version 1.0.2 shows file and directory content

VULNWATCH - 20020707 [VulnWatch] KF Web Server version 1.0.2 shows file and directory content


Last Updated: 27 May 2016 10:37:10