SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2002-0415

Directory traversal vulnerability in the web server used in RealPlayer 6.0.7, and possibly other versions, may allow local users to read files that are accessible to RealPlayer via a ..

LOW 1.7EPSS 1.29%

Does this matter?

Lower severity and a low EPSS score (1.29%). Track it; it rarely justifies an emergency change on its own.

Description

Directory traversal vulnerability in the web server used in RealPlayer 6.0.7, and possibly other versions, may allow local users to read files that are accessible to RealPlayer via a .. (dot dot) in an HTTP GET request to port 1275.

CVSS 2.0
1.7 LOWAV:L/AC:L/Au:S/C:P/I:N/A:N
EPSS
1.29% probability · 69th percentile
CISA KEV
Not listed
Affected
realnetworks/realplayer
Source
cve@mitre.org

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.