Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2001-1152

Опубликовано: 05 сент. 2001
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

Baltimore Technologies WEBsweeper 4.02, when used to manage URL blacklists, allows remote attackers to bypass blacklist restrictions and connect to unauthorized web servers by modifying the requested URL, including (1) a // (double slash), (2) a /SUBDIR/.. where the desired file is in the parentdir, (3) a /./, or (4) URL-encoded characters.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:baltimore_technologies:websweeper:4.02:*:*:*:*:*:*:*

EPSS

Процентиль: 61%
0.00415
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
больше 3 лет назад

Baltimore Technologies WEBsweeper 4.02, when used to manage URL blacklists, allows remote attackers to bypass blacklist restrictions and connect to unauthorized web servers by modifying the requested URL, including (1) a // (double slash), (2) a /SUBDIR/.. where the desired file is in the parentdir, (3) a /./, or (4) URL-encoded characters.

EPSS

Процентиль: 61%
0.00415
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other