VulnerabilityModified
CVE-2002-0415
Directory traversal vulnerability in the web server used in RealPlayer 6.0.7, and possibly other versions, may allow local users to read files that are accessible to RealPlayer via a ..
LOW 1.7EPSS 1.29%
Does this matter?
Lower severity and a low EPSS score (1.29%). Track it; it rarely justifies an emergency change on its own.
Description
Directory traversal vulnerability in the web server used in RealPlayer 6.0.7, and possibly other versions, may allow local users to read files that are accessible to RealPlayer via a .. (dot dot) in an HTTP GET request to port 1275.
- CVSS 2.0
- 1.7 LOWAV:L/AC:L/Au:S/C:P/I:N/A:N
- EPSS
- 1.29% probability · 69th percentile
- CISA KEV
- Not listed
- Affected
- realnetworks/realplayer
- Source
- cve@mitre.org
References
- http://www.iss.net/security_center/static/8336.phpVendor Advisory
- http://www.securityfocus.com/archive/1/259333Vendor Advisory
- http://www.securityfocus.com/bid/4221Vendor Advisory
- http://www.iss.net/security_center/static/8336.phpVendor Advisory
- http://www.securityfocus.com/archive/1/259333Vendor Advisory
- http://www.securityfocus.com/bid/4221Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.