CVE-2002-1451

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
24/08/2002
Last modified:
03/04/2025

Description

Blazix before 1.2.2 allows remote attackers to read source code of JSP scripts or list restricted web directories via an HTTP request that ends in a (1) "+" or (2) "\" (backslash) character.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:desiderata_software:blazix:1.2:*:*:*:*:*:*:*
cpe:2.3:a:desiderata_software:blazix:1.2.1:*:*:*:*:*:*:*