CVE Vulnerabilities

CVE-2002-1390

Published: Jan 17, 2003 | Modified: Oct 10, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

The daemon for GeneWeb before 4.09 does not properly handle requested paths, which allows remote attackers to read arbitrary files via a crafted URL.

Affected Software

Name Vendor Start Version End Version
Geneweb Geneweb 4.05 (including) 4.05 (including)
Geneweb Geneweb 4.06 (including) 4.06 (including)
Geneweb Geneweb 4.07 (including) 4.07 (including)
Geneweb Geneweb 4.08 (including) 4.08 (including)

References