Back

CVE-2002-2292

Directory traversal vulnerability in Remote Console Applet in Halycon Software iASP 1.0.9 allows remote attackers to read arbitrary files via a .. (dot dot) in the HTTP request to port 9095.

Published: Dec 31, 2002 Modified: Jun 16, 2026
CWE-22

CVSS Metrics

Affected Products (1)

Vendor Product Version
halycon_software iasp 1.0.9

GitHub Security Advisory GHSA-7q7q-qpjh-vhjf

Directory traversal vulnerability in Remote Console Applet in Halycon Software iASP 1.0.9 allows...

Risk Scores

CVSS Score 5.0 / 10
EPSS Score 1.54%

Top 27% most likely to be exploited

Threat Score 20.5 / 100

Data Sources

NVD EPSS GitHub