Back
CVE-2002-1437
Directory traversal vulnerability in the web handler for Perl 5.003 on Novell NetWare 5.1 and NetWare 6 allows remote attackers to read arbitrary files via an HTTP request containing "..%5c" (URL-encoded dot-dot backslash) sequences.
Published: Apr 11, 2003
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (4)
| Vendor | Product | Version |
|---|---|---|
| novell | netware | 5.1 |
| novell | netware | 5.1 |
| novell | netware | 6.0 |
| novell | netware | 6.0 |
GitHub Security Advisory GHSA-pgf4-g67j-c3jw
Directory traversal vulnerability in the web handler for Perl 5.003 on Novell NetWare 5.1 and...
References (8)
- http://archives.neohapsis.com/archives/bugtraq/2002-08/0202.html Patch, Vendor Advisory
- http://support.novell.com/servlet/tidfinder/2963307
- http://www.iss.net/security_center/static/9915.php Patch, Vendor Advisory
- http://www.securityfocus.com/bid/5522 Patch, Vendor Advisory
- http://archives.neohapsis.com/archives/bugtraq/2002-08/0202.html Patch, Vendor Advisory
- http://support.novell.com/servlet/tidfinder/2963307
- http://www.iss.net/security_center/static/9915.php Patch, Vendor Advisory
- http://www.securityfocus.com/bid/5522 Patch, Vendor Advisory
Risk Scores
CVSS Score
5.0 / 10
EPSS Score
17.03%
Top 3% most likely to be exploited
Threat Score
25.1 / 100
Data Sources
NVD
EPSS
GitHub