CVE-2002-2145

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/12/2002
Last modified:
05/09/2008

Description

Savant Web Server 3.1 and earlier allows remote attackers to bypass authentication for password protected user folders via a URL with a hex encoded space (%20) and a '.' (%2e) at the end of the filename.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:savant:savant_webserver:*:*:*:*:*:*:*:* 3.1 (including)