SecBoard
Zurück zur CVE-Übersicht

CVE-2002-2050

LOW(2.1)

AV:L/AC:L/Au:N/C:N/I:P/A:N

Risk Signal Score5/100 — NIEDRIG

EPSS-Score

0%

Exploit-Wahrscheinlichkeit (30 Tage)

CVSS Score

2.1

Technische Schwere

Beschreibung

Directory traversal vulnerability in processor_web plugin for ModLogAn 0.5.0 through 0.7.11, when used with the splitby option, allows local users to overwrite arbitrary files via a .. (dot dot) in the hostname of a log entry.

Referenzen