CVE-2002-2154: Path Traversal
Published Dec 31, 2002
·Updated
Directory traversal vulnerability in Monkey HTTP Daemon 0.1.4 allows remote attackers to read arbitrary files via .. (dot dot) sequences.
Affected Software
1 affected component
Monkey-project Monkey=0.1.4
Remediation
Patch Available
Event History
Dec 31, 2002
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
RemedyDescriptionSeverityWeaknessAffected Software
Nov 16, 2005
CVE Published
via MITRE·09:17 PM
Data Sourced
via MITRE·09:17 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-2154?
CVE-2002-2154 is classified as a medium severity vulnerability allowing directory traversal.
2
How do I fix CVE-2002-2154?
To fix CVE-2002-2154, upgrade the Monkey HTTP Daemon to a version that is not vulnerable to directory traversal.
3
Who is affected by CVE-2002-2154?
CVE-2002-2154 affects users running the Monkey HTTP Daemon version 0.1.4.
4
What type of attack does CVE-2002-2154 enable?
CVE-2002-2154 enables remote attackers to read arbitrary files on the server through directory traversal.
5
What is the impact of exploiting CVE-2002-2154?
Exploiting CVE-2002-2154 can lead to unauthorized access to sensitive files on the server.