Vulnerabilities > CVE-2002-1021 - Unspecified vulnerability in Working Resources Inc. Badblue 1.7.3Enterprise/1.7.3Personal
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
BadBlue server allows remote attackers to read restricted files, such as EXT.INI, via an HTTP request that contains a hex-encoded null byte.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |
Exploit-Db
description | Working Resources 1.7.3 BadBlue Null Byte File Disclosure Vulnerability. CVE-2002-1021. Remote exploit for windows platform |
id | EDB-ID:21616 |
last seen | 2016-02-02 |
modified | 2002-06-13 |
published | 2002-06-13 |
reporter | Matthew Murphy |
source | https://www.exploit-db.com/download/21616/ |
title | Working Resources 1.7.3 BadBlue Null Byte File Disclosure Vulnerability |
Nessus
NASL family | Web Servers |
NASL id | BADBLUE_NULL_BYTE.NASL |
description | The remote host is running the BadBlue web server. It was possible to read the contents of |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 11064 |
published | 2002-08-06 |
reporter | This script is Copyright (C) 2002-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/11064 |
title | BadBlue Hex-encoded Null Byte Request Arbitrary File Access |
code |
|
References
- http://archives.neohapsis.com/archives/bugtraq/2002-07/0143.html
- http://archives.neohapsis.com/archives/bugtraq/2002-07/0143.html
- http://www.iss.net/security_center/static/9557.php
- http://www.iss.net/security_center/static/9557.php
- http://www.securityfocus.com/bid/5226
- http://www.securityfocus.com/bid/5226