Back to Database
Status published
High
CVE-2002-2145
Savant Web Server 3.1 and earlier allows remote attackers to...
Vulnerability Description
Savant Web Server 3.1 and earlier allows remote attackers to bypass authentication for password protected user folders via a URL with a hex encoded space (%20) and a '.' (%2e) at the end of the filename.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2002-2145
Credits & Attribution
No credits recorded in the NVD database.
References
More from savant
View All →CVE-2005-2859
Savant Web Server stores user credentials in plaintext in the...
Medium
4.6
CVE-2005-0338
Buffer overflow in Savant Web Server 3.1 allows remote attackers...
High
7.5
CVE-2002-2146
cgitest.exe in Savant Web Server 3.1 and earlier allows remote...
High
7.5
CVE-2002-1828
Savant Webserver 3.1 allows remote attackers to cause a denial...
Medium
5
CVE-2002-1120
Buffer overflow in Savant Web Server 3.1 and earlier allows...
High
7.5
Affected Vendor
savant
View all reports →Affected Software
savant webserver
Vulnerable Versions:
0
Timeline
Official Publish:
November 16th, 2005
Last Modified:
September 17th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.