SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2002-0786

iCon administrative web server for Critical Path inJoin Directory Server 4.0 allows authenticated inJoin administrators to read arbitrary files by specifying the target file in the LOG parameter.

MEDIUM 5.0EPSS 3.19%

Does this matter?

Lower severity and a low EPSS score (3.19%). Track it; it rarely justifies an emergency change on its own.

Description

iCon administrative web server for Critical Path inJoin Directory Server 4.0 allows authenticated inJoin administrators to read arbitrary files by specifying the target file in the LOG parameter.

CVSS 2.0
5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
EPSS
3.19% probability · 87th percentile
CISA KEV
Not listed
Affected
critical path/injoin directory server
Source
cve@mitre.org

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.