CVE Vulnerabilities

CVE-2002-1052

Published: Oct 04, 2002 | Modified: Oct 18, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

Jigsaw 2.2.1 on Windows systems allows remote attackers to use MS-DOS device names in HTTP requests to (1) cause a denial of service using the con device, or (2) obtain the physical path of the server using two requests to the aux device.

Affected Software

Name Vendor Start Version End Version
Jigsaw W3c 2.2.1 (including) 2.2.1 (including)

References