CVE Vulnerabilities

CVE-2002-0107

Published: Mar 25, 2002 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Web administration interface in CacheFlow CacheOS 4.0.13 and earlier allows remote attackers to obtain sensitive information via a series of GET requests that do not end in with HTTP/1.0 or another version string, which causes the information to be leaked in the error message.

Affected Software

NameVendorStart VersionEnd Version
CacheosCacheflow0.0 (including)0.0 (including)
CacheosCacheflow3.1.02 (including)3.1.02 (including)
CacheosCacheflow3.1.03 (including)3.1.03 (including)
CacheosCacheflow3.1.04 (including)3.1.04 (including)
CacheosCacheflow3.1.05 (including)3.1.05 (including)
CacheosCacheflow3.1.06 (including)3.1.06 (including)
CacheosCacheflow3.1.07 (including)3.1.07 (including)
CacheosCacheflow3.1.08 (including)3.1.08 (including)
CacheosCacheflow3.1.09 (including)3.1.09 (including)
CacheosCacheflow3.1.10 (including)3.1.10 (including)
CacheosCacheflow3.1.11 (including)3.1.11 (including)
CacheosCacheflow3.1.12 (including)3.1.12 (including)
CacheosCacheflow3.1.13 (including)3.1.13 (including)
CacheosCacheflow3.1.14 (including)3.1.14 (including)
CacheosCacheflow3.1.15 (including)3.1.15 (including)
CacheosCacheflow3.1.16 (including)3.1.16 (including)
CacheosCacheflow3.1.17 (including)3.1.17 (including)
CacheosCacheflow3.1.18 (including)3.1.18 (including)
CacheosCacheflow3.1.19 (including)3.1.19 (including)
CacheosCacheflow3.1.20 (including)3.1.20 (including)
CacheosCacheflow4.0.11 (including)4.0.11 (including)
CacheosCacheflow4.0.12 (including)4.0.12 (including)
CacheosCacheflow4.0.13 (including)4.0.13 (including)

References