Back

CVE-2002-1437

Directory traversal vulnerability in the web handler for Perl 5.003 on Novell NetWare 5.1 and NetWare 6 allows remote attackers to read arbitrary files via an HTTP request containing "..%5c" (URL-encoded dot-dot backslash) sequences.

Published: Apr 11, 2003 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (4)

Vendor Product Version
novell netware 5.1
novell netware 5.1
novell netware 6.0
novell netware 6.0

GitHub Security Advisory GHSA-pgf4-g67j-c3jw

Directory traversal vulnerability in the web handler for Perl 5.003 on Novell NetWare 5.1 and...

Risk Scores

CVSS Score 5.0 / 10
EPSS Score 17.03%

Top 3% most likely to be exploited

Threat Score 25.1 / 100

Data Sources

NVD EPSS GitHub