Vulnerabilities > CVE-2002-0107 - Unspecified vulnerability in Cacheflow Cacheos

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
cacheflow
exploit available

Summary

Web administration interface in CacheFlow CacheOS 4.0.13 and earlier allows remote attackers to obtain sensitive information via a series of GET requests that do not end in with HTTP/1.0 or another version string, which causes the information to be leaked in the error message.

Exploit-Db

descriptionCacheflow CacheOS 3.1/4.0 Web Administration Arbitrary Cached Page Code Leakage Vulnerability. CVE-2002-0107. Remote exploits for multiple platform
idEDB-ID:21212
last seen2016-02-02
modified2002-01-08
published2002-01-08
reporterBjorn Djupvik
sourcehttps://www.exploit-db.com/download/21212/
titleCacheflow CacheOS 3.1/4.0 Web Administration Arbitrary Cached Page Code Leakage Vulnerability