Field Assessment
AI analysis pending.
CVE
CVE-2002-0892
Severity
MEDIUM
CVSS
5
EPSS
7.56%
Original Filing — NVD Description
The default configuration of NewAtlanta ServletExec ISAPI 4.1 allows remote attackers to determine the path of the web root via a direct request to com.newatlanta.servletexec.JSP10Servlet without a filename, which leaks the pathname in an error message.