Vulnerability Details CVE-2002-0107
Web administration interface in CacheFlow CacheOS 4.0.13 and earlier allows remote attackers to obtain sensitive information via a series of GET requests that do not end in with HTTP/1.0 or another version string, which causes the information to be leaked in the error message.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.065
EPSS Ranking 90.7%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2002-0107
-
cpe:2.3:a:cacheflow:cacheos:0.0
-
cpe:2.3:a:cacheflow:cacheos:3.1.02
-
cpe:2.3:a:cacheflow:cacheos:3.1.03
-
cpe:2.3:a:cacheflow:cacheos:3.1.04
-
cpe:2.3:a:cacheflow:cacheos:3.1.05
-
cpe:2.3:a:cacheflow:cacheos:3.1.06
-
cpe:2.3:a:cacheflow:cacheos:3.1.07
-
cpe:2.3:a:cacheflow:cacheos:3.1.08
-
cpe:2.3:a:cacheflow:cacheos:3.1.09
-
cpe:2.3:a:cacheflow:cacheos:3.1.10
-
cpe:2.3:a:cacheflow:cacheos:3.1.11
-
cpe:2.3:a:cacheflow:cacheos:3.1.12
-
cpe:2.3:a:cacheflow:cacheos:3.1.13
-
cpe:2.3:a:cacheflow:cacheos:3.1.14
-
cpe:2.3:a:cacheflow:cacheos:3.1.15
-
cpe:2.3:a:cacheflow:cacheos:3.1.16
-
cpe:2.3:a:cacheflow:cacheos:3.1.17
-
cpe:2.3:a:cacheflow:cacheos:3.1.18
-
cpe:2.3:a:cacheflow:cacheos:3.1.19
-
cpe:2.3:a:cacheflow:cacheos:3.1.20
-
cpe:2.3:a:cacheflow:cacheos:4.0.11
-
cpe:2.3:a:cacheflow:cacheos:4.0.12
-
cpe:2.3:a:cacheflow:cacheos:4.0.13