Back

CVE-2002-2375

Directory traversal vulnerability in CommuniGate Pro 4.0b4 and possibly earlier versions allows remote attackers to list the contents of the WebUser directory and its parent directory via a (1) .. (dot dot) or (2) . (dot) in a URL. NOTE: it is not clear whether this issue reveals any more information regarding directory structure than is already available to any CommuniGate Pro user, although there is a possibility that it could be used to infer product version information.

Published: Dec 31, 2002 Modified: Jun 16, 2026
CWE-22

CVSS Metrics

Affected Products (1)

Vendor Product Version
stalker communigate_pro *

GitHub Security Advisory GHSA-74qx-gg8g-9m92

Directory traversal vulnerability in CommuniGate Pro 4.0b4 and possibly earlier versions allows...

Risk Scores

CVSS Score 5.0 / 10
EPSS Score 1.53%

Top 28% most likely to be exploited

Threat Score 20.5 / 100

Data Sources

NVD EPSS GitHub