CVE Database · CVE-2002-1340
CVSS v3.1
N/A
EPSS
11.97%
Published
Dec 18, 2002
Modified
Apr 15, 2026
Public PoC / Exploit (1)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
The "ConnectionFile" property in the DataSourceControl component in Office Web Components (OWC) 10 allows remote attackers to determine the existence of local files by detecting an exception.
Affected Products (1)
References (4)