# CVE-2002-1042

## Summary

- **CVE ID:** CVE-2002-1042
- **Severity:** UNKNOWN
- **CVSS Score:** 0.42
- **CWE:** N/A
- **Published:** Aug 31, 2002
- **Last Modified:** Mar 16, 2026

## Description

Directory traversal vulnerability in search engine for iPlanet web server 6.0 SP2 and 4.1 SP9, and Netscape Enterprise Server 3.6, when running on Windows platforms, allows remote attackers to read arbitrary files via ..\ (dot-dot backslash) sequences in the NS-query-pat parameter.

## Affected Products

- n/a — n/a (n/a)

## References

- [CNA](http://archives.neohapsis.com/archives/bugtraq/2002-07/0085.html)
- [CNA](http://www.iss.net/security_center/static/9517.php)
- [CNA](http://www.securityfocus.com/bid/5191)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 10.55%
- **EPSS Percentile:** 93.1

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-19._