CVE-2003-1298 Information

Description

Multiple directory traversal vulnerabilities in siteman.php3 in AnyPortal(php) 12 MAY 00 allow remote attackers to (1) create (2) delete (3) save and (4) upload files by navigating to the root directory and entering a filename beginning with ./..\ (dot slash dot dot).

Reference

http://nger.org/anyportal/forum/read.php?f=1&i=152&t=152reply_152 http://secunia.com/advisories/19359 http://www.osvdb.org/23984 http://www.securityfocus.com/bid/17197 http://www.vupen.com/english/advisories/2006/1053 https://exchange.xforce.ibmcloud.com/vulnerabilities/25396

Share on: