CVE-2002-0708 EXPLOIT
5.0
MEDIUM · CVSS 2.0 · EPSS 3.5% (pctl 89)
Patch early
A public exploit exists.
Description
Directory traversal vulnerability in the Web Reports Server for SurfControl SuperScout WebFilter allows remote attackers to read arbitrary files via an HTTP request containing ... (triple dot) sequences.
Scoring
| CVSS | 5.0 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
| EPSS | 3.49% — more likely to be exploited than 89% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2002-10-10 |
| Last modified | 2026-06-16 |
Affected (2)
| Vendor | Product |
|---|---|
| surfcontrol | superscout web filter |
| surfcontrol | web filter |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | SurfControl SuperScout WebFilter for Windows 2000 - File Disclosure | 2002-10-02 |
References
→ the Explorer · watch your stack · NVD