← All CVEs

CVE-2002-0661

high · 7.5

Directory traversal vulnerability in Apache 2.0 through 2.0.39 on Windows, OS2, and Netware allows remote attackers to read arbitrary files and execute commands via .. (dot dot) sequences containing \ (backslash) characters.

7.5
CVSS
69.7%
EPSS (exploit prob.)
99th
EPSS percentile
2002-08-12
Published

AV:N/AC:L/Au:N/C:P/I:P/A:P

Affected products

VendorProductAffected versions
apachehttp_server2.0
apachehttp_server2.0.28
apachehttp_server2.0.28
apachehttp_server2.0.28
apachehttp_server2.0.32
apachehttp_server2.0.32
apachehttp_server2.0.34
apachehttp_server2.0.35
apachehttp_server2.0.36
apachehttp_server2.0.37
apachehttp_server2.0.38
apachehttp_server2.0.39

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2002-0661