Exploitation Summary
EIP tracks 1 public exploit for CVE-2002-2145. PoCs published by Auriemma Luigi.
AI-analyzed exploit summary This exploit leverages an input validation flaw in Savant Webserver to bypass authentication for password-protected directories. The vulnerability allows access by appending specific characters (., %2e, %20) to the directory path.
Description
Savant Web Server 3.1 and earlier allows remote attackers to bypass authentication for password protected user folders via a URL with a hex encoded space (%20) and a '.' (%2e) at the end of the filename.
Exploits (1)
This exploit leverages an input validation flaw in Savant Webserver to bypass authentication for password-protected directories. The vulnerability allows access by appending specific characters (., %2e, %20) to the directory path.