Unrated severityNVD Advisory· Published Dec 31, 2002· Updated Apr 16, 2026
CVE-2002-2050
CVE-2002-2050
Description
Directory traversal vulnerability in processor_web plugin for ModLogAn 0.5.0 through 0.7.11, when used with the splitby option, allows local users to overwrite arbitrary files via a .. (dot dot) in the hostname of a log entry.
Affected products
5cpe:2.3:a:modlogan:modlogan:0.5:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:modlogan:modlogan:0.5:*:*:*:*:*:*:*
- cpe:2.3:a:modlogan:modlogan:0.5.6:*:*:*:*:*:*:*
- cpe:2.3:a:modlogan:modlogan:0.5.7:*:*:*:*:*:*:*
- cpe:2.3:a:modlogan:modlogan:0.6:*:*:*:*:*:*:*
- cpe:2.3:a:modlogan:modlogan:0.7.11:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.