Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2002-0160 | First vendor Publication | 2002-04-22 |
Vendor | Cve | Last vendor Modification | 2024-11-20 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:L/Au:N/C:P/I:N/A:N) | |||
---|---|---|---|
Cvss Base Score | 5 | Attack Range | Network |
Cvss Impact Score | 2.9 | Attack Complexity | Low |
Cvss Expoit Score | 10 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
The administration function in Cisco Secure Access Control Server (ACS) for Windows, 2.6.x and earlier and 3.x through 3.01 (build 40), allows remote attackers to read HTML, Java class, and image files outside the web root via a ..\.. (modified ..) in the URL to port 2002. |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0160 |
CWE : Common Weakness Enumeration
% | Id | Name |
---|
CPE : Common Platform Enumeration
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
5352 | CiscoSecure ACS Arbitrary File Access Cisco SecureACS for Windows <= (2.6 and 3.0.1 build 40) contains a flaw that allows a remote attacker to access data outside of the web path. The issue is due to the program not properly sanitizing user input, specifically traversal style attacks (../../) supplied via the URL. |
Sources (Detail)
Source | Url |
---|
Alert History
Date | Informations |
---|---|
2024-11-28 23:23:59 |
|
2024-11-28 12:04:57 |
|
2024-08-02 12:02:08 |
|
2024-08-02 01:01:18 |
|
2024-02-02 01:01:56 |
|
2024-02-01 12:01:20 |
|
2023-09-05 12:01:51 |
|
2023-09-05 01:01:11 |
|
2023-09-02 12:01:52 |
|
2023-09-02 01:01:11 |
|
2023-08-12 12:02:14 |
|
2023-08-12 01:01:12 |
|
2023-08-11 12:01:56 |
|
2023-08-11 01:01:13 |
|
2023-08-06 12:01:47 |
|
2023-08-06 01:01:12 |
|
2023-08-04 12:01:51 |
|
2023-08-04 01:01:12 |
|
2023-07-14 12:01:49 |
|
2023-07-14 01:01:13 |
|
2023-03-29 01:01:48 |
|
2023-03-28 12:01:18 |
|
2022-10-11 12:01:38 |
|
2022-10-11 01:01:05 |
|
2021-05-04 12:01:37 |
|
2021-04-22 01:01:45 |
|
2020-05-23 00:14:54 |
|
2016-10-18 12:00:59 |
|
2016-06-28 14:58:20 |
|
2013-05-11 12:08:20 |
|