CVE-2002-2413: Medium severity Microsoft Windows 9x vulnerability
Published Dec 31, 2002
·Updated
WebSite Pro 3.1.11.0 on Windows allows remote attackers to read script source code for files with extensions greater than 3 characters via a URL request that uses the equivalent 8.3 file name.
Affected Software
6 affected components
Microsoft Windows 9x
Microsoft Windows NT
Deerfield Website Pro=3.1.11.0
All of the following
Any of the following
Microsoft Windows 9x
Microsoft Windows NT
Deerfield Website Pro=3.1.11.0
Remediation
Patch Available
Event History
Dec 31, 2002
CVE Published
05:00 AM
Data Sourced
05:00 AM
DescriptionWeaknessAffected Software
Data Sourced
via NVD·05:00 AM
RemedyDescriptionSeverityAffected Software
Nov 1, 2007
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-2413?
CVE-2002-2413 has a medium severity rating as it allows unauthorized access to script source code.
2
How do I fix CVE-2002-2413?
To fix CVE-2002-2413, you should upgrade to a newer version of WebSite Pro that does not have this vulnerability.
3
What systems are affected by CVE-2002-2413?
CVE-2002-2413 specifically affects WebSite Pro version 3.1.11.0 running on Windows systems.
4
What can attackers do with CVE-2002-2413?
Attackers can exploit CVE-2002-2413 to read the source code of scripts in files with extensions longer than three characters.
5
When was CVE-2002-2413 disclosed?
CVE-2002-2413 was disclosed in May 2002.