CVE Vulnerabilities

CVE-2002-2050

Published: Dec 31, 2002 | Modified: Sep 05, 2008
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

Directory traversal vulnerability in processor_web plugin for ModLogAn 0.5.0 through 0.7.11, when used with the splitby option, allows local users to overwrite arbitrary files via a .. (dot dot) in the hostname of a log entry.

Affected Software

Name Vendor Start Version End Version
Modlogan Modlogan 0.6 0.6
Modlogan Modlogan 0.5.7 0.5.7
Modlogan Modlogan 0.7.11 0.7.11
Modlogan Modlogan 0.5.6 0.5.6
Modlogan Modlogan 0.5 0.5

References