CVE-2002-1860: Pramati Server

Medium severity, CVSS 5.0. EPSS: 2.1% chance of exploitation in the next 30 days.

Pramati Server 3.0, when running on Windows, allows remote attackers to retrieve files in the WEB-INF directory, which contains Java class files and configuration information, via a request to the WEB-INF directory with a trailing dot ("WEB-INF.").

Affected products

  • Pramati Pramati Server: version 3.0 only

Published 2002-12-31. Last modified 2026-06-16.