peter bassill · operator
$ cve CVE-2002-0946 JSON

CVE-2002-0946 EXPLOIT

5.0
MEDIUM · CVSS 2.0 · EPSS 3.8% (pctl 90)

Patch early

A public exploit exists.

Description

Directory traversal vulnerability in SeaNox Devwex before 1.2002.0601 allows remote attackers to read arbitrary files via ..\ (dot dot) sequences in an HTTP request.

Scoring

CVSS5.0 (MEDIUM, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
EPSS3.76% — more likely to be exploited than 90% of all CVEs
On CISA KEVno
Public exploityes
Published2002-10-04
Last modified2026-06-16

Affected (1)

VendorProduct
seanoxdevwex

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD