PT-2002-1345 · Falcon · Falcon Web Server
Published
2002-05-31
·
Updated
2017-10-10
·
CVE-2002-0275
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Falcon web server versions 2.0.0.1020 and earlier
Description
The issue allows remote attackers to bypass authentication and read restricted files by including an extra / (slash) in the requested URL.
Recommendations
For Falcon web server versions 2.0.0.1020 and earlier, update to a version later than 2.0.0.1020 to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Falcon Web Server