CVE-2002-0465 Information

Description

Directory traversal vulnerability in filemanager.asp for Hosting Controller 1.4.1 and earlier allows remote attackers to read and modify arbitrary files and execute commands via a .. (dot dot) in the OpenPath parameter.

Reference

http://archives.neohapsis.com/archives/bugtraq/2002-01/0039.html http://www.hostingcontroller.com/english/patches/ForAll/download/foldersecurity.zip http://www.securityfocus.com/bid/3811 https://exchange.xforce.ibmcloud.com/vulnerabilities/7824

Share on: