Back

CVE-2002-2144

Directory traversal vulnerability in BearShare 4.0.5 and 4.0.6 allows remote attackers to read files outside of the web root by hex-encoding the "/" (forward slash) or "." (dot) characters.

Published: Dec 31, 2002 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (2)

Vendor Product Version
free_peers bearshare 4.0.5
free_peers bearshare 4.0.6

GitHub Security Advisory GHSA-x358-wm7h-p4j2

Directory traversal vulnerability in BearShare 4.0.5 and 4.0.6 allows remote attackers to read...

Risk Scores

CVSS Score 5.0 / 10
EPSS Score 2.55%

Top 16% most likely to be exploited

Threat Score 20.8 / 100

Data Sources

NVD EPSS GitHub