CVE-2002-1864

Sws Simple Web Server - Path Traversal

Title source: rule

Description

Directory traversal vulnerability in Simple Web Server (SWS) 0.0.4 through 0.1.0 allows remote attackers to read arbitrary files via a ".." (dot dot) in an HTTP request.

Exploits (1)

metasploit WORKING POC
by CwG GeNiuS, sinn3r · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/auxiliary/scanner/http/simple_webserver_traversal.rb

Scores

EPSS 0.5934
EPSS Percentile 98.2%

Details

Status published
Products (4)
sws/sws_simple_web_server 0.0.3
sws/sws_simple_web_server 0.0.4
sws/sws_simple_web_server 0.1.0
sws/sws_simple_web_server 0.1.1
Published Dec 31, 2002
Tracked Since Feb 18, 2026