First published: Mon Mar 31 2003(Updated: )
BadBlue 1.7 allows remote attackers to bypass password protections for directories and files via an HTTP request containing an extra / (slash).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Working Resources Inc. BadBlue | =1.7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-1541 is categorized as a high severity vulnerability due to its capability to bypass password protections.
The best way to fix CVE-2002-1541 is to upgrade BadBlue to a version that addresses this vulnerability, or to implement stricter access controls.
CVE-2002-1541 involves an attack where remote attackers exploit an extra slash in the HTTP request to gain unauthorized access.
CVE-2002-1541 specifically affects BadBlue version 1.7.0.
Yes, CVE-2002-1541 can be exploited remotely, allowing attackers to bypass security measures without direct access.